VigorBX 2000 Series User’s Guide
345
through Internet.
L2TP with IPsec Policy -
Build a L2TP VPN connection
through the Internet. You can select to use L2TP alone or
with IPsec. Select from below:
None:
Do not apply the IPsec policy. Accordingly, the
VPN connection employed the L2TP without IPsec
policy can be viewed as one pure L2TP connection.
Nice to Have:
Apply the IPsec policy first, if it is
applicable during negotiation. Otherwise, the dial-out
VPN connection becomes one pure L2TP connection.
Must:
Specify the IPsec policy to be definitely applied on the
L2TP connection.
User Name -
This field is applicable when you select, PPTP or
L2TP with or without IPsec policy above. The length of the
name is limited to 49 characters.
Password -
This field is applicable when you select PPTP or
L2TP with or without IPsec policy above. The length of the
password is limited to 15 characters.
PPP Authentication -
This field is applicable when you
select, PPTP or L2TP with or without IPSec policy above.
PAP/CHAP/MS-CHAP/MS-CHAPv2 is the most common
selection due to compatibility.
VJ compression -
This field is applicable when you select
PPTP or L2TP with or without IPsec policy above. VJ
Compression is used for TCP/IP protocol header compression.
Normally set to
On
to improve bandwidth utilization.
IKE Authentication Method -
This group of fields is
applicable for IPsec Tunnels and L2TP with IPsec Policy.
Pre-Shared Key
- Input 1-63 characters as pre-shared
key.
Digital Signature (X.509)
- Select one predefined
Profiles set in the
VPN and Remote Access >>IPsec
Peer Identity
.
Peer ID -
Select one of the predefined Profiles set in
VPN and
Remote Access >>IPsec Peer Identity.
Local ID –
Specify a local ID
(Alternative Subject Name
First
or
Subject Name First)
to be used for Dial-in
setting in the LAN-to-LAN Profile setup. This item is
optional and can be used only in IKE aggressive mode.
Local Certificate –
Select one of the profiles set in
Certificate Management>>Local Certificate
.
IPsec Security Method -
This group of fields is a must for
IPsec Tunnels and L2TP with IPsec Policy.
Medium AH (Authentication Header)
means data will
be authenticated, but not be encrypted. By default,
this option is active.
High (ESP-Encapsulating Security Payload)-
means
payload (data) will be encrypted and authenticated.
Select from below:
DES without Authentication
-Use DES encryption
algorithm and not apply any authentication scheme.
DES with Authentication-
Use DES encryption algorithm
and apply MD5 or SHA-1 authentication algorithm.
3DES without Authentication
-Use triple DES
encryption algorithm and not apply any authentication
Summary of Contents for VigorBX 2000 Series
Page 1: ......
Page 12: ......
Page 62: ...VigorBX 2000 Series User s Guide 50 This page is left blank ...
Page 122: ...VigorBX 2000 Series User s Guide 110 ...
Page 145: ...VigorBX 2000 Series User s Guide 133 ...
Page 163: ...VigorBX 2000 Series User s Guide 151 ...
Page 180: ...VigorBX 2000 Series User s Guide 168 ...
Page 222: ...VigorBX 2000 Series User s Guide 210 This page is left blank ...
Page 248: ...VigorBX 2000 Series User s Guide 236 This page is left blank ...
Page 330: ...VigorBX 2000 Series User s Guide 318 This page is left blank ...
Page 419: ...VigorBX 2000 Series User s Guide 407 ...
Page 428: ...VigorBX 2000 Series User s Guide 416 The items categorized under OTHERS ...
Page 454: ...VigorBX 2000 Series User s Guide 442 This page is left blank ...
Page 467: ...VigorBX 2000 Series User s Guide 455 ...
Page 532: ...VigorBX 2000 Series User s Guide 520 This page is left blank ...
Page 574: ...VigorBX 2000 Series User s Guide 562 This page is left blank ...
Page 597: ...VigorBX 2000 Series User s Guide 585 ...
Page 604: ...VigorBX 2000 Series User s Guide 592 ...
Page 608: ...VigorBX 2000 Series User s Guide 596 ...
Page 610: ...VigorBX 2000 Series User s Guide 598 This page is left blank ...