Cradlepoint IBR650 manual IKE Phase

Models: IBR650

1 131
Download 131 pages 12.35 Kb
Page 92
Image 92

CRADLEPOINT IBR650 USER MANUAL Firmware ver. 3.3.0

7.7.3Page 3: IKE Phase 1

IKE security has two phases, Phase 1 and Phase 2. You have the ability to distinctly configure each phase, but the default settings will be sufficient for most users.

To set up a tunnel with a remote site, you need to match your tunnel's IKE negotiation parameters with the remote site. By selecting several encryption, hash, and DH group options, you

improve your chances for a successful tunnel negotiation. For greatest compatibility, select all options; for greatest security, select only the most secure options that your devices support.

Exchange Mode: The IKE protocol has 2 modes of negotiating phase 1 - Main (also called Identity Protection) and Aggressive.

In Main mode, IKE separates the key information from the identities, allowing for the identities of peers to be secure at the expense of extra packet exchanges.

In Aggressive mode, IKE tries to combine as much information into fewer packets while maintaining security. Aggressive mode is slightly faster but less secure.

Because it has better security, Main mode is recommended for most users.

Key Lifetime: The lifetime of the generated keys of Phase 1 of the IPsec negotiation from IKE. After the time has expired, IKE will renegotiate a new set of Phase 1 keys.

Encryption, Hash, and DH Groups: Each IKE exchange uses one encryption algorithm, one hash function, and one DH group to make a secure exchange.

© 2011 CRADLEPOINT, INC.

PLEASE VISIT HTTP://KNOWLEDGEBASE.CRADLEPOINT.COM/ FOR MORE HELP AND RESOURCES

PAGE 90

Page 92
Image 92
Cradlepoint IBR650 manual IKE Phase

IBR650 specifications

The Cradlepoint IBR650 is a highly regarded mobile router designed for enterprises that require reliable, high-speed connectivity in challenging environments. Targeted mainly at field operations, public safety, and primary or backup broadband applications, the IBR650 integrates advanced technologies that ensure robust performance and versatility.

One of the standout features of the IBR650 is its dual-modem capability, which allows users to incorporate multiple cellular network connections simultaneously. This ensures increased reliability and uninterrupted service, as the router can switch between connections seamlessly to maintain a stable internet connection. The IBR650 supports 4G LTE and can fall back on 3G networks when necessary, providing flexible options to maintain connectivity.

In terms of performance, the IBR650 offers fast data throughput with speeds that can support high-demand applications. This mobile router is designed for SD-WAN environments, enabling optimized routing of traffic for applications like cloud services, VoIP, and video conferencing. With support for automatic failover and load balancing across its multiple connections, the IBR650 ensures that users experience minimal disruption in their connectivity.

The IBR650 is equipped with Cradlepoint's NetCloud platform, providing cloud-managed networking capabilities. This platform offers centralized management, making it simple to deploy, monitor, and maintain multiple routers across various locations. The intuitive dashboard enables administrators to access real-time analytics, troubleshoot issues, and manage security settings effortlessly.

Security is a core aspect of the IBR650's design. It features built-in firewall protection, VPN support, and intrusion detection, all of which help secure sensitive data as it travels across the network. The ability to create secure, private connections is crucial for mobile deployments, particularly in sectors like healthcare, government, and utilities.

With a compact form factor and fanless design, the IBR650 is ideal for mobile scenarios where space and noise levels are considerations. Its rugged construction ensures that it can withstand harsh environmental conditions, making it suitable for use in vehicles or outdoor settings.

In conclusion, the Cradlepoint IBR650 stands out for its dual-modem functionality, high-speed performance, cloud management, robust security features, and durable design. It is an excellent choice for organizations that need reliable and flexible connectivity on the go, supporting a variety of applications across different industries.