ZyWALL 10/50 Internet Security Gateway

Menu 27.1.1.1 - IKE Setup

Phase 1

Negotiation Mode= Main

Pre-Shared Key=

Encryption algorithm = DES

Authentication algorithm = SHA1

SA Life Time (Seconds)= 28800

Key Group= DH1

Phase 2

Active Protocol = ESP

Encryption algorithm = DES

Authentication algorithm = SHA1

SA Life Time (Seconds)= 28800

Encapsulation = Tunnel

Perfect Forward Secrecy (PFS)= None

Press ENTER to Confirm or ESC to Cancel:

Figure 26-9Menu 27.1.1.1 IKE Setup

Table 26-5Menu 27.1.1.1 IKE Setup

FIELD

DESCRIPTION

EXAMPLE

 

 

 

Phase 1

 

 

 

 

 

Negotiation

Press [SPACE BAR] to choose from Main or Aggressive and then press

Main

Mode

[ENTER]. See earlier for a discussion of these modes. Multiple SAs

 

 

connecting through a secure gateway must have the same negotiation

 

 

mode.

 

Pre-Shared Key

ZyWALL gateways authenticate an IKE VPN session by matching pre-

 

 

shared keys. Pre-shared keys are best for small networks with fewer than ten

 

 

nodes. Enter your pre-shared key here. Enter up to 31 characters. Any

 

 

character may be used, including spaces, but trailing spaces are truncated.

 

 

Multiple SAs connecting through a secure gateway must have the same pre-

 

 

shared key.

 

 

 

 

VPN/IPSec Setup

26-15