USR-G806 User Manual
Technical Support:
h.usriot.com
Jinan USR IOT Technology Limited
www.usriot.com
33
Figure35 setting page
Start DPD Detection: Whether to Enable this Function
DPD time interval: Set the time interval of connection detection (DPD).
DPD timeout: Set the connection detection (DPD) timeout.
DPD operation: Set up the operation of connection detection.
IKE encryption: The first stage includes IKE encryption mode, integrity scheme and DH switching
algorithm.
IKE life cycle: Set IKE life cycle in seconds, default: 28800.
SA type: ESP and AH can be selected in the second stage.
ESP Encryption: Select the corresponding encryption mode and integrity scheme.
ESP Life Cycle: Set ESP Life Cycle, Unit: s, Default: 3600
Mode: The negotiation mode defaults to the main mode, and the barbaric mode can be chosen.
Session Key Forward Encryption (PFS): Whether PFS is enabled
Authentication method: At present, it supports the authentication method of pre-shared key.
Note:
After the configuration is successful, ISAKMP SA established flag in the connection log indicates that IPSEC
VPN was created successfully.
3.3.8.4 OPENVPN
OPEN VPN is an application layer VPN implementation based on Openssl library. It supports certificate-based
two-way authentication, that is, the client needs to authenticate the server, and the server also needs to
authenticate the client.