Netopia 4542, 4541 manual Encryption Support, MS-CHAP V2 and 128-bit strong encryption

Models: 4542 4541

1 209
Download 209 pages 41.22 Kb
Page 129
Image 129

Virtual Private Networks (VPNs) 10-15

IP Profile Parameters

Address Translation Enabled:

Yes

NAT Map List...

Easy-PAT

NAT Server List...

Easy-Servers

Local WAN IP Address:

0.0.0.0

Remote IP Address:

173.167.8.10

Remote IP Mask:

255.255.0.0

Filter Set...

 

Remove Filter Set

 

RIP Profile Options...

 

Enter the Remote IP Address and Remote IP Mask for the host to which you want to tunnel.

Encryption Support

Encryption is a method for altering user data into a form that is unusable by anyone other than the intended recipient. The recipient must have the means to decrypt the data to render it usable to them. The encryption process protects the data by making it difficult for any third party to get at the original data.

Netopia PPTP is fully compatible with Microsoft Point-to-Point Encryption (MPPE) data encryption for user data transfer over the PPTP tunnel. Microsoft Windows NT Server provides MPPE encryption capability only when Microsoft Challenge Handshake Authentication Protocol (MS-CHAP) is enabled. Netopia complies with this feature to allow MPPE only when MS-CHAP is negotiated. MS-CHAP and MPPE are user-selectable options in the PPTP Tunnel Options screen. If either the client or the server side specifies encryption, then encryption becomes mandatory for both.

Netopia’s ATMP implementation supports Data Encryption Standard (DES) data encryption for user data transfer over the ATMP tunnel between two Netopia routers. The encryption option, none or DES, is a selectable option in the ATMP Tunnel Options screen.

MS-CHAP V2 and 128-bit strong encryption

Notes:

The Netopia 4541/4542 supports 128-bit (“strong”) encryption when using PPTP tunnels.

ATMP does not have an option of using 128-bit MPPE. If you are using ATMP between two Netopia routers you can optionally set 56-bit DES encryption.

When you choose MS-CHAP as the authentication method for a PPTP tunnel, the Netopia router will start negotiating MS-CHAPv2. If the router or VPN adapter client you are connecting to does not support MS-CHAPv2, the Netopia router will fall back to MS-CHAPv1, or, if the router or VPN adapter client you are connecting to does not support MPPE at all, the PPP session will be dropped. This is done automatically

Page 129
Image 129
Netopia 4542, 4541 manual Encryption Support, MS-CHAP V2 and 128-bit strong encryption