Vigor3300 Series User’s Guide
107
Encryption algorithms –
NULL/DES/3DES/AES.
Authentication algorithms -
MD5/SHA1
Accepted Proposal
If you choose
Only accept proposal listed above
, only the
selected proposal will be accepted and applied by this device.
If you choose
Accept all supported proposal
, all the proposals
supported by this device will be accepted and applied.
PFS
Enables the PFS (Perfect Forward Secrecy) function. A new
Diffie-Hellman Key Exchange is included every time an
encryption and/or authentication key are computed on PFS.
Status Enables
or
Disables
the dead peer detection function.
Delay
The keep-alive timer. A Hello message will be emitted
periodically when a tunnel is idle. Use the value 0 to disable this
function. The recommended value is 30 seconds if enabled.
Timeout
The timeout timer. The peer will be declared dead once no
acknowledge message is received after timeout value. Use the
value 0 to disable this function. The recommended value is 120
seconds if enabled.
After finish the configuration, click
Apply
to apply the IPSec policy setting into the
policy table.
Significant fields will be summarized in the IPSec Table.
Operational Status
reflects
the current status of the tunnel.
UP
means the IPSec tunnel has been established.
DOWN
means no tunnel existing, or termination status of the tunnel.
If user expects the local gateway to act as the IKE initiator, i.e., emit the first IKE main
mode message, user can click the hyperlink
Initiate
to start the IKE negotiation or set
Summary of Contents for Vigor3300 Series
Page 1: ......
Page 152: ...Vigor3300 Series User s Guide 146 This page is left blank ...