ZyWALL 10/50 Internet Security Gateway

Table 26-1 AH and ESP

ESP

AH

 

 

Select DES for minimal security and 3DES for maximum.

Select MD5 for minimal security and SHA-1for

Select NULL to set up a tunnel without encryption.

maximum security.

DES (default)

MD5 (default)

Data Encryption Standard (DES) is a widely used method

MD5 (Message Digest 5) produces a 128-bit

of data encryption using a private (secret) key. DES

digest to authenticate packet data.

applies a 56-bit key to each 64-bit block of data.

 

 

 

3DES

SHA1

Triple DES (3DES) is a variant of DES, which iterates

SHA1 (Secure Hash Algorithm) produces a

three times with three separate keys (3 x 56 = 168 bits),

160-bit digest to authenticate packet data.

effectively doubling the strength of DES.

 

 

 

26.3 IPSec Summary

Type 1 in menu 27 and then press [ENTER] to display Menu 27.1 — IPSec Summary. This is a summary read-only menu of your IPSec rules (tunnels). Edit or create an IPSec rule by selecting an index number and then configuring the associated submenus.

The following figure helps explain the main fields in menu 27.1.

Figure 26-3 IPSec Summary Fields

Local IP addresses must be static.

VPN/IPSec Setup

26-3