DH Group - Three groups can be selected: o Group 1 (MODP768)

o Group 2 (MODP1024) o Group 5 (MODP1536)

Encryption algorithm - Two algorithms can be selected: o 3DES

o DES

Authentication algorithm - Two algorithms can be selected: o SHA1

o MD5

Life Time: The unit of Life time is based on the value of the life time unit, which can be seconds or KB. If the value of the unit is seconds, the value of life time represents the life time of the dedicated VPN tunnel between both end gateways. Its value can range from 300 to 172,800 seconds. If the value of the unit is KB, the value of life time represents the maximum allowable amount of transmitted packets through the dedicated VPN tunnel between both end gateways. This value can range from 20,480 to 2,483,647 KB.

Life Time Unit: The life time unit can be set to seconds or KB.

Proposal ID: The identifier of the IKE proposal can be selected for adding a corresponding proposal to the dedicated tunnel. A total of ten proposals can be set in the proposal pool. A maximum of four proposals from the pool can be applied to the dedicated tunnel.

“Add to” button: Click this button to add the selected proposal, shown in the proposal ID field of the IKE Proposal index list. The proposal shown in the index list will be used in phase 1 of the IKE negotiation for obtaining the IKSAMP SA of the dedicated tunnel.

Page 37
Image 37
SMC Networks SMCBR18VPN manual