Configuring the IPsec Settings

 

 

 

 

 

 

Item

Description

 

 

 

 

Authentication

Specify the authentication algorithm to be applied when [ESP] is selected

 

Algorithm for ESP

for [Security Protocol] from the following:

 

 

[MD5], [SHA1]

 

 

 

 

Life Time

Specify the life time of the IPsec SA (Security Association) as a time period

 

 

or data volume. The SA will expire when the time period you specify

 

 

elapses or the volume of data you specify reaches the volume carried.

 

 

If you specify both a time period and a data volume, the SA will expire as

 

 

soon as either is reached, and a new SA will then be obtained by

 

 

negotiation.

 

 

To specify the life time of the SA as a time period, enter a number of

 

 

seconds.

 

 

To specify the life time of the SA as a data volume, enter a number of KBs.

 

 

 

 

Key Perfect Forward

Select whether to enable or disable PFS (Perfect Forward Secrecy).

 

Secrecy

 

 

 

 

 

IKE Settings

 

 

Item

Description

 

 

 

 

IKE Version

Displays the IKE version.

8

 

 

Encryption Algorithm

Specify the encryption algorithm from the following:

 

 

[DES], [3DES], [AES-128], [AES-192], [AES-256]

 

 

 

 

Authentication

Specify the authentication algorithm from the following:

 

Algorithm

[MD5], [SHA1]

 

 

 

 

 

 

IKE Life Time

Specify the life time of the ISAKMP SA as a time period. Enter a number of

 

 

seconds.

 

 

 

 

IKE Diffie-Hellman

Select the IKE Diffie-Hellman Group to be used in the generation of the IKE

 

Group

encryption key from the following:

 

 

[DH1], [DH2]

 

 

 

 

Pre-Shared Key

Specify the PSK (Pre-Shared Key) to be used for authentication of a

 

 

communicating device. Can contain up to 32 characters.

 

 

 

 

Key Perfect Forward

Select whether to enable or disable PFS (Perfect Forward Secrecy).

 

Secrecy

 

 

 

 

 

343

Page 345
Image 345
Ricoh SP C240SF, C242SF operating instructions Description Authentication, Seconds IKE Diffie-Hellman