Mode:
the working modes of the IPSec Tunnel including:
Site to Site Gateway, Site to Site Client, Gateway, Client
The Site to Site Gateway/Client options are used for creating a site-to-
site VPN tunnel, while the Gateway/Client are for a VPN connection
between two end devices, e.g. to use along with L2TP protocol for
enhanced security.
Name
: a name of the tunnel used for identifying tunnels.
(USER) FQDN
: a Fully Qualified Domain Name (FQDN) selectedfor the
devices in the VPN Tunnel. Both the local and remote devices have to
be set with a unique name. FQDN
Security Type
: the option to define how the IP address(es) are managed
within the IPSec tunnel. It can be one of the three options: Subnet, IP, or
IP Range. Each option comes with its associated IP settings. Both local
and remote devices have to configured.
Preshared Key
: the secret key pre-set for the IPSec Tunnel and used by
both server and client.
Aggressive Mode
: the VPN tunnel will use Aggressive mode instead of
Main mode when enabled. Disabled by default.
IKE DH Group
: the Diffie-Hellman (DH) group used in the Internet Key
Exchange (IKEv2) protocol.
IKE Encryption:
defines the encryption algorithm used in the IKEv2
protocol.
IKE Hash:
defines the Hash function used in the IKEv2 protocol.
ESP Encryption:
defines the encryption algorithm used in the
Encapsulating Security Payload (ESP).
ESP Authentication:
defines the cryptography function used in the ESP
authentication.