TP-Link TL-ER6020 manual SA Lifetime Specify ISAKMP SA Lifetime in IKE negotiation

Models: TL-ER6020

1 168
Download 168 pages 1.21 Kb
Page 90
Image 90

Exchange Mode: Select the IKE Exchange Mode in phase 1, and ensure the remote VPN peer uses the same mode.

Main: Main mode provides identity protection and exchanges more information, which applies to the scenarios with higher requirement for identity protection.

Aggressive: Aggressive Mode establishes a faster connection but with lower security, which applies to scenarios with lower requirement for identity protection.

Local ID Type: Select the local ID type for IKE negotiation. IP Address: uses an IP address as the ID in IKE negotiation. FQDN: uses a name as the ID.

Local ID:The local WAN IP will be inputted automatically if IP Address type is selected. If Name type is selected, enter a name for the local device as the ID in IKE negotiation

Remote ID Type: Select the remote ID type for IKE negotiation. IP Address: uses an IP address as the ID in IKE negotiation. FQDN: uses a name as the ID.

Remote ID: The remote gateway IP will be inputted automatically if IP Address type is selected. If Name type is selected, enter the name of the remote peer as the ID in IKE negotiation.

IKE Proposal: Select the Proposal for IKE negotiation phase 1. Up to four proposals can be selected.

Pre-shared Key: Enter the Pre-shared Key for IKE authentication, and ensure both the two peers use the same key. The key should consist of visible characters without blank space.

SA Lifetime: Specify ISAKMP SA Lifetime in IKE negotiation.

DPD:Enable or disable DPD (Dead Peer Detect) function. If enabled, the IKE endpoint can send a DPD request to the peer to inspect whether the IKE peer is alive.

-85-

Page 90
Image 90
TP-Link TL-ER6020 manual SA Lifetime Specify ISAKMP SA Lifetime in IKE negotiation