Configuring VPN
Configuring Advanced VPN Parameters
Cisco RV215W Wireless-N VPN Firewall Administration Guide
107
9
•
Enable
—Enable the policy.
•
Disable
—Disable the policy.
•
Delete
—Delete the policy.
NOTE
You cannot delete an IKE policy if it is being used in a VPN policy. You must first
disable and delete the VPN policy in the VPN Policy Table.
•
Add Row
—Add an IKE policy. See
Adding or Editing IKE Policies
.
NOTE
If you have a VPN connection already configured, you cannot add another without
deleting the existing VPN connection.
STEP 3
Click
Save
.
Adding or Editing IKE Policies
STEP 1
When adding or editing IKE policies, configure the following settings:
•
Policy Name—
Enter a unique name for the policy for identification and
management purposes.
•
Exchange Mode—
Choose one of the following options:
-
Main
—Negotiates the tunnel with higher security, but is slower.
-
Aggressive
—Establishes a faster connection, but with lowered security.
•
Local Identifier
—Local IKE identifier.
•
Remote Identifier
—Remote IKE identifier.
•
Redundancy Identifier
—The unique identifier for the alternate backup
endpoint used to restore the connection if the original VPN connection fails.
STEP 2
In the
IKE SA Parameters
section, the Security Association (SA) parameters
define the strength and mode for negotiating the SA. You can configure the
following settings:
•
Encryption Algorithm—
Choose the algorithm used to negotiate the SA:
-
DES
-
3DES
-
AES-128