
Prestige 652 ADSL Security Router
|
|
| Menu 27.1.1.1 - IKE Setup |
|
|
| |
|
|
|
|
|
| ||
|
|
| Phase 1 |
|
|
|
|
|
|
| Negotiation Mode= Main |
|
|
| |
|
|
|
|
|
| ||
|
|
| Encryption Algorithm = DES |
|
|
| |
|
|
| Authentication Algorithm = MD5 |
|
|
| |
|
|
| SA Life Time (Seconds)= 28800 |
|
|
| |
|
|
| Key Group= DH1 |
|
|
|
|
|
|
| Phase 2 | = ESP |
|
|
|
|
|
| Active Protocol |
|
|
| |
|
|
| Encryption Algorithm = DES |
|
|
| |
|
|
| Authentication Algorithm = SHA1 |
|
|
| |
|
|
| SA Life Time (Seconds)= 28800 |
|
|
| |
|
|
| Encapsulation | = Tunnel |
|
|
|
|
|
| Perfect Forward Secrecy (PFS)= None |
|
|
| |
|
|
| Press ENTER to Confirm or ESC to Cancel: |
|
|
| |
|
|
|
|
|
|
|
|
|
|
| Figure |
|
|
| |
|
|
| Table |
|
|
| |
|
|
|
|
|
|
|
|
|
| FIELD |
| DESCRIPTION | EXAMPLE | ||
Phase 1 |
|
|
|
|
| ||
|
|
|
|
|
|
| |
|
| Negotiation | Press [SPACE BAR] to choose from Main or Aggressive and then press | Main | |||
|
| Mode | [ENTER]. See earlier for a discussion of these modes. Multiple SAs |
|
|
| |
|
|
| connecting through a secure gateway must have the same negotiation |
|
|
| |
|
|
| mode. |
|
|
|
|
Prestige gateways authenticate an IKE VPN session by matching |
|
|
| ||||
|
|
| keys. |
|
|
| |
|
|
| Enter your |
|
|
| |
|
|
| may be used, including spaces, but trailing spaces are truncated. Multiple |
|
|
| |
|
|
| SAs connecting through a secure gateway must have the same |
|
|
| |
|
|
| key. |
|
|
|
|
|
|
|
|
|
|
| |
|
| Encryption | When DES is used for data communications, both sender and receiver must | DES | |||
|
| Algorithm | know the same secret key, which can be used to encrypt and decrypt the |
|
|
| |
|
|
| message or to generate and verify a message authentication code. Prestige |
|
|
| |
|
|
| DES encryption algorithm uses a |
|
|
| |
|
|
| Triple DES (3DES), is a variation on DES that uses a |
|
|
| |
|
|
| result, 3DES is more secure than DES. It also requires more processing |
|
|
| |
|
|
| power, resulting in slightly increased latency and decreased throughput. |
|
|
|
VPN/IPSec Setup |