14-49
Cisco Router and Security Device Manager Version 2.2 Users Guide
OL-4015-08
Chapter14 Internet Key Exchange
Internet Key Exchange (IKE)
AES-192Advanced Encryption Standard (AES) encryption with a 192-bit
key.
AES-256Advanced Encryption Standard (AES) encryption with a 256-bit
key.
Hash
The authentication algorithm to be used for the negotiation. There are two
options:
Secure Hash Algorithm (SHA)
Message Digest 5 (MD5)
Authentication
The authentication method to be used.
Pre-SHARE. Authentication will be performed using pre-shared keys.
RSA_SIG. Authentication will be performed using digital signatures.
D-H Group
Diffie-Hellman (D-H) Group. Diffie-Hellman is a public-key cryptography
protocol that allows two routers to establish a shared secret over an unsecure
communications channel. The options are as follows:
group1768-bit D-H Group. D-H Group 1.
group21024-bit D-H Group. D-H Group 2. This group provides more
security than group 1, but requires more processing time.
group51536-bit D-H Group. D-H Group 5. This group provides more
security than group 2, but requires more processing time.
Note If your router does not support group5, it will not appear in the list.
Easy VPN servers do not support D-H Group 1.