From this process, a secure communication channel is established. An SA is automatically constructed
using the IKE (Internet Key Exchange) protocol (although depending on the settings, the SA can be
established manually).
2.
After an SA is established, encapsulate packets and transmit them securely.
Example: Establishing a VPN in transport mode
LAN
LAN
VPN
IP-PT
PC
Switching
Hub
Switching
Hub
IP-PT
PC
Built-in
Router
KX-NS1000
Built-in
Router
KX-NS1000
SA (Security Association)
IKE
VPN
Encapsulation
Encapsulation
Features
The following settings are available to modify establishing a VPN connection over IPsec.
Setting
Description
IKE Settings
IKE (Internet Key Exchange) settings
Security
Security settings for SA
ISAKMP SA
ISAKMP (Internet Security Association Key Management
Protocol) settings for SA
IKE Proposal
Settings for the PBX’s IKE proposal. VPN negotiations are
performed according to these settings.
IPsec SA
IPsec settings for SA
IPsec Proposal
Settings for the PBX’s IPsec proposal. VPN negotiations are
performed according to these settings.
Optional Function
Settings for other optional functions, such as XAUTH
authentication mode settings.
Installation Manual
395
8.6.23 VPN—IPsec
Summary of Contents for KX-NS1000
Page 40: ...40 Installation Manual 1 4 Data Security ...
Page 76: ...76 Installation Manual 2 3 3 System Capacity ...
Page 108: ...108 Installation Manual 3 1 3 Using CTI Applications ...
Page 267: ...the priority Installation Manual 267 5 8 3 Setting LLDP Parameters ...
Page 312: ...312 Installation Manual 5 12 Automatic Configuration of Mailboxes ...
Page 318: ...318 Installation Manual 6 2 Methods of Stacking PBXs ...
Page 332: ...332 Installation Manual 7 1 6 Troubleshooting by Error Log ...
Page 400: ...400 Installation Manual 8 6 26 WAN Port Mirroring ...
Page 414: ...414 Installation Manual 9 3 7 PCMPR Software File Version 004 1xxxx ...