INS_RL1000GW_REV– 15 Jul 2016 PAGE 148
INSTALLATION AND OPERATION MANUAL
RL1000GW
TECH SUPPORT: 1.888.678.9427
IPSec Command Association
In below are detailed the configuration fields of the IPSec in their respective association to the
ISAKMP structure.
Highlighted in blue are the CLI names of the configurable fields.
Enable IPSec
{enable |disable}
Settings
Log level (log-level)
Dead Peer Discovery
delay
(dpd-delay)
max failure (dpd-maxfail)
max retires (dpd-retry)
flush Security Association (flush-sa proto)
id-type (id-type)
soft timer (soft-lifetime)
Phase 1
Authentication method {pre_shared_key | rsasig}
Diffie–Hellman key exchange Group (dh-group)
Internet Key Exchange mode (ike-phase1-mode)
Encryption Algorithm (phase1-encryption-algo)
Hash Algorithm (phase1-hash-algo)
Life Time (phase1-lifetime)
Phase 2
Perfect Forward Secrecy (pfs-group)
Encryption Algorithm (phase2-encryption-algo)
Authentication Algorithm (phase2-auth-algo)