[IPsec]
S
etting IPsec
5
-25
5
S
ett
ing Page
8
[IKE Pre-
S
hared Key]
Enter the pre-shared key for IKE (auto key exchange)
(up to 127 characters).
Note
If auto key exchange is used, it will take approximately 5 to 10
seconds before communication with the camera starts.
IPsec Set (Manual)
IPsec Sets 1 to 5 are available, and you can specify IPsec
settings for one communication device for each IPsec Set.
1
[IPsec
S
et]
Set IPsec Set to [Disable], [Enable in IPv4] or [Enable
in IPv6].
2
[IPsec Mode]
Set IPsec mode to [Tunnel Mode] or [Transport Mode].
3
[Destination IPv4 Address], [Destination IPv6 Address]
Enter the IP address of the connection destination.
4
[
S
ource IPv4 Address], [
S
ource IPv6 Address]
Enter the IP address of the source.
5
[
S
ecurity Protocol]
Set the IPsec protocol to [ESP], [AH] or [ESP and AH].
If [ESP] is selected, enter only the setting items relating
to ESP.
If [AH] is selected, enter only the setting items relating
to AH.
If [ESP and AH] is selected, enter all setting items.
6
[
S
ecurity Gateway IPv4 Address], [
S
ecurity Gateway
IPv6 Address]
If [IPsec Mode] is set to [Tunnel Mode] in
2
, set the IP
address of the security gateway.
7
[Destination
S
ubnet Mask Length] (IPv4), [Destination
Prefix Length] (IPv6)
This setting is required only if [IPsec Mode] is set to
[Tunnel Mode] in
2
.
If IPv6 is used, enter a desired prefix length for the
connection destination in the range of 16 to 128.
If IPv4 is used, enter a desired length in the range of 1
to 32.
z
If [
S
ecurity Protocol] is set to [E
S
P] or [E
S
P and AH] in
5
,
8
[
S
A E
S
P Encryption Algorithm] to
A
g
[
S
A E
S
P
S
PI (inbound)] must be set.
8
[
S
A E
S
P Encryption Algorithm]
Set the ESP encryption algorithm to [AES], [3DES],
[DES] or [NULL] according to the encryption algorithm
supported by the device to connect to.
Normally [AES] or [3DES] is recommended.
9
[
S
A E
S
P Authentication Algorithm]
Set the ESP authentication algorithm to
[HMAC_SHA1_96], [HMAC_MD5_96] or [No
Authentication] according to the authentication
algorithm supported by the device to connect to.
If [ESP] is used alone, [No Authentication] cannot be
selected.
A
q
[
S
A E
S
P Encryption Key (outbound)]
Set the SA encryption key for outbound. If [AES],
[3DES] or [DES] was selected in
8
, set a 128-bit, 192-
bit or 64-bit hexadecimal, respectively. This item need
not be set if [NULL] was selected.
A
a
[
S
A E
S
P Authentication Key (outbound)]
Set the SA authentication key for outbound. If
[HMAC_SHA1_96] or [HMAC_MD5_96] was selected
in
9
, set a 160-bit or 128-bit hexadecimal,
respectively. This item need not be set if [No
Authentication] was selected.
A
s
[
S
A E
S
P
S
PI (outbound)]
Set the SA SPI value for outbound.
Set a desired value in the range of 256 to 4294967295.
A
d
[
S
A E
S
P Encryption Key (inbound)]
Set the SA encryption key for inbound.
If [AES], [3DES] or [DES] was selected in
8
, set a 128-
bit, 192-bit or 64-bit hexadecimal, respectively. This
item need not be set if [NULL] was selected.
A
f
[
S
A E
S
P Authentication Key (inbound)]
Set the SA authentication key for inbound.
If [HMAC_SHA1_96] or [HMAC_MD5_96] was selected
in
9
, set a 160-bit or 128-bit hexadecimal,
respectively. This item need not be set if [No
Authentication] was selected.
Important
If the camera is rebooted during auto key exchange
communication, a connection error may result after rebooting.
In this case, connect again.
Summary of Contents for VB-M600D
Page 12: ...xii ...
Page 24: ...1 12 ...
Page 40: ...3 10 ...
Page 77: ...Chapter 6 Admin Tools Privacy Mask Setting Intelligent Function Setting Viewing Logs ...
Page 94: ...6 18 ...
Page 110: ...7 16 ...