C-M-G
Series
Manual
© TDT GmbH
Chapter 5: Network Configuration
Seite 50 von 136
Command
Description
Listed:
The selected functions of the IPSec core sector will be
logged (multiple selections are possible using the
[Ctrl]
button)
AH
(authentication transforms code)
EROUTE
(eroute table manipulation code)
ESP
(encryptions transforms code)
RADIJ
(radij tree manipulation code)
SPI
(SA table manipulation code)
TUNNEL
(tunneling code)
XFORM
(transform selection and manipulation code)
Pluto Debug
Pluto debug permits setup of the debug depth for the IPSec IKE
daemon Pluto.
All:
All messages from Pluto will be logged
None:
Messages from Pluto will not be logged
Listed:
The selected messages from Pluto will be logged:
control:
Log the Pluto decision-making
crypt:
Log the encryption and decryption of
messages
emitting:
Log
the
structure
of
the
outgoing
messages
klips:
Log the interaction between Pluto and
Klips
parsing:
Log
the
structure
of
the
incoming
messages
private:
Allows debugging of outgoing messages
using the »private key«
raw:
Log raw data
5.8.3 Connection Defaults
Connection Default settings can be defined using this configuration menu. Parameters to create
templates and ipsec connections are equal to the following ones:
5.8.3.1 Global Settings
Command
Description
Action on Startup
Ignore:
the connection will not be started (default)
Load/Add:
the connection will be started, however builds no
tunnel but waits for the remote station
Initiate:
the connection will be started and automatically builds a
tunnel
Connection Type
Tunnel:
IPSec will be started in tunnel mode (default)
Transport:
IPSec will be started in transport mode
Passtrough:
IPSec will be started in pass-through mode (only
with manual keying)
Enable Dead Peer Detection
Determines whether the remote peers accessibility should be
checked
DPD Delay
Check remote peers accessibility every
n
seconds if »Enable
Dead Peer Detection« is set to
Yes