Prestige 334 User’s Guide

This may be unnecessary for data that does not require such security, so PFS is disabled

(None) by default in the Prestige. Disabling PFS means new authentication and encryption keys are derived from the same root secret (which may have security implications in the long run) but allows faster SA setup (by bypassing the Diffie-Hellman key exchange).

15.12 Configuring Advanced IKE Settings

Select Advanced at the bottom of the Rule Setup IKE screen. This is the Rule Setup IKE- Advanced screen as shown next.

169

Chapter 15 VPN Screens