Vigor3900 Series User’s Guide
349
IKE Phase 1
- Select from
Main
mode and
Aggressive
mode. The ultimate outcome is to exchange security
proposals to create a protected secure channel.
Main
mode
is more secure than
Aggressive
mode since more exchanges
are done in a secure channel to set up the IPsec session.
However, the
Aggressive
mode is faster. The default value
in Vigor router is Main mode.
Auth Type -
The authentication to be used by Pre-Shared
Key or RSA Signature. Choose
PSK
or
RSA
for such
profile.
Local Certificate -
Choose a local certificate from the drop
down list if RSA is selected as Auth Type.
Local Peer ID
–Type the ID for Vigor3900 which can be
configured by the remote end. It is available for Aggressive
Mode enabled only.
Remote Peer ID –
Peer ID is on behalf of the IP address
while identity authenticating with remote VPN server. The
length of the ID is limited to 47 characters. It is available for
Aggressive Mode enabled only.
Preshared Key
– Specify a key for IKE authentication if
PSK is selected as Auth Type.
Security Protocol –
Choose
ESP
to specify the IPSec
protocol for the Encapsulating Security Payload protocol.
The data will be encrypted and authenticated. Choose
AH
to
specify the IPSec protocol for the Authentication Header
protocol. The data will be authenticated but not be
encrypted.
Apply
Click it to save the configuration.
Cancel
Click it to exit the page without saving the configuration.
The
Advanced
tab provides more parameters of IPsec tunnel, change setting if needed.
VoIPon www.voipon.co.uk [email protected] Tel: (0)330 088 0195 Fax: +44 (0)1245 808299