Prestige 662HW Series User’s Guide
VPN/IPSec Setup
42-3
Table 42-1 Menu 27.1 IPSec Summary
FIELD DESCRIPTION EXAMPLE
Addr End /
Mask
When the
Addr Type
field in
Menu 27.1.1 IPSec Setup
is configured to
Single
, this is the same (static) IP address as in the
Local Addr Start
field.
When the
Addr Type
field in
Menu 27.1.1 IPSec Setup
is configured to
Range
, this is the end (static) IP address, in a range of computers on the LAN
behind your Prestige.
When the
Addr Type
field in
Menu 27.1.1 IPSec Setup
is configured to
SUBNET
, this is a subnet mask on the LAN behind your Prestige.
192.168.1.38
Encap
This field displays
Tunnel
mode
or
Transport
mode. See earlier for a
discussion of these. You need to finish configuring the VPN policy in menu
27.1.1.1 or 27.1.1.2 if
???
is displayed.
Tunnel
IPSec
Algorithm
This field displays the security protocols used for an SA.
ESP
provides
confidentiality and integrity of data by encrypting the data and encapsulating it
into IP packets. Encryption methods include 56-bit
DES
and 168-bit
3DES
.
NULL
denotes a tunnel without encryption.168-bit
3DES
and 128-bit
AES
.
NULL
denotes a tunnel without encryption.
AH
(Authentication Header) provides strong integrity and authentication by
adding authentication information to IP packets. This authentication
information is calculated using header and payload data in the IP packet. This
provides an additional level of security.
AH
choices are
MD5
(default - 128
bits) and
SHA -1
(160 bits)
.
Both
AH
and
ESP
increase the Prestige’s processing requirements and
communications latency (delay).
You need to finish configuring the VPN policy in menu 27.1.1.1 or 27.1.1.2 if
???
is displayed.
ESP AES MD5
Key Mgt
This field displays the SA’s type of key management, (
IKE
or
Manual
).
IKE
Remote Addr
Start
When the
Addr Type
field in
Menu 27.1.1 IPSec Setup
is configured to
Single
, this is a static IP address on the network behind the remote IPSec
router.
When the
Addr Type
field in
Menu 27.1.1 IPSec Setup
is configured to
Range
, this is the beginning (static) IP address, in a range of computers on
the network behind the remote IPSec router.
When the
Addr Type
field in
Menu 27.1.1 IPSec Setup
is configured to
SUBNET
, this is a static IP address on the network behind the remote IPSec
router.
This field displays
N/A
when you configure the
Secure Gateway Address
field in SMT 27.1.1 to 0.0.0.0.
172.16.2.40
Addr End /
Mask
When the
Addr Type
field in
Menu 27.1.1 IPSec Setup
is configured to
Single
, this is the same (static) IP address as in the
Remote Addr Start
field.
When the
Addr Type
field in
Menu 27.1.1 IPSec Setup
is configured to
Range
, this is the end (static) IP address, in a range of computers on the
network behind the remote IPSec router.
When the
Addr Type
field in
Menu 27.1.1 IPSec Setup
is configured to
SUBNET
, this is a subnet mask on the network behind the remote IPSec
router.
This field displays
N/A
when you configure the
Secure Gateway Address
field in SMT 27.1.1 to 0.0.0.0.
172.16.2.46
Summary of Contents for Prestige 662HW Series
Page 26: ......
Page 28: ......
Page 36: ......
Page 54: ......
Page 56: ......
Page 64: ......
Page 84: ......
Page 100: ......
Page 116: ......
Page 128: ......
Page 150: ......
Page 154: ......
Page 162: ......
Page 168: ......
Page 194: ......
Page 196: ......
Page 200: ......
Page 208: ......
Page 214: ......
Page 216: ......
Page 230: ......
Page 242: ......
Page 244: ......
Page 252: ......
Page 258: ......
Page 262: ......
Page 266: ......
Page 272: ......
Page 286: ......
Page 290: ......
Page 310: ......
Page 328: ......
Page 352: ......
Page 358: ......
Page 362: ......
Page 374: ......
Page 376: ......
Page 394: ......
Page 398: ......
Page 400: ......
Page 410: ......
Page 444: ......
Page 452: ......