
Vigor3100 Series User’s Guide
63
IKE Authentication Method
This usually applies to those are remote dial-in user or node
(LAN-to-LAN) which uses dynamic IP address and
IPSec-related VPN connections such as L2TP over IPSec and
IPSec tunnel.
Pre-Shared Key -
Currently only support Pre-Shared Key
authentication.
Pre-Shared Key-
Specify a key for IKE authentication
Re-type Pre-Shared Key-
Confirm the pre-shared key.
IPSec Security Method
Medium -
Authentication Header (AH) means data will be
authenticated, but not be encrypted. By default, this option is
active.
High -
Encapsulating Security Payload (ESP) means payload
(data) will be encrypted and authenticated. You may select
encryption algorithm from Data Encryption Standard (DES),
Triple DES (3DES), and AES.
3
3
.
.
6
6
.
.
4
4
I
I
P
P
S
S
e
e
c
c
P
P
e
e
e
e
r
r
I
I
d
d
e
e
n
n
t
t
i
i
t
t
y
y
To use digital certificate for peer authentication in either LAN-to-LAN connection or Remote
User Dial-In connection, here you may edit a table of peer certificate for selection. As shown
below, the router provides 32 entries of digital certificates for peer dial-in users.
Click each index to edit one peer digital certificate. There are three security levels of digital
signature authentication: Fill each necessary field to authenticate the remote peer. The
following explanation will guide you to fill all the necessary fields.
Summary of Contents for Vigor 3100 Series
Page 2: ...Vigor3100 Series User s Guide ii...
Page 6: ......
Page 20: ...Vigor3100 Series User s Guide 14...
Page 114: ...Vigor3100 Series User s Guide 108...
Page 122: ...Vigor3100 Series User s Guide 116...