![3Com TP-1610 Скачать руководство пользователя страница 327](http://html1.mh-extra.com/html/3com/tp-1610/tp-1610_usermanualmanual_440848327.webp)
V6100 and V7122 User Guide
327
IKE Specifications:
Authentication mode - pre-shared key only.
Main mode is supported for IKE Phase 1.
Supported IKE SA encryption algorithms - DES and 3DES.
Hash types for IKE SA - SHA1 and MD5.
IPSec
IPSec is responsible for encrypting and decrypting the IP streams.
The IPSec Security Policy Database (SPD) table defines up to 20 IP peers to which the
IPSec security is applied. IPSec can be applied to all packets designated to a specific IP
address or to a specific IP address, port (source or destination) and protocol type.
Each outgoing packet is analyzed and compared to the SPD table. The packet's destination
IP address (and optionally, destination port, source port and protocol type) are compared to
each entry in the table. If a match is found, the gateway checks if an SA already exists for
this entry. If it doesn’t, the IKE protocol is invoked (see
IKE
) and an IPSec SA is established.
The packet is encrypted and transmitted. If a match isn’t found, the packet is transmitted un-
encrypted.
An incoming packet whose parameters match one of the entries of the SPD table
but is received un-encrypted, is dropped.
IPSec Specifications:
Transport mode only.
Encapsulation Security Payload (ESP) only.
Support for Cipher Block Chaining (CBC).
Supported IPSec SA encryption algorithms - DES and 3DES.
Hash types for IPSec SA are SHA1 and MD5.
Configuring the IPSec and IKE
To enable IPSec and IKE on the gateway set the
ini
file parameter ‘EnableIPSec’ to 1. Note
that when this parameter is defined, even if no table entries exist, the V7122 channel
capacity is reduced by 4 DSP cores (for example, 24 channels in the default template). On
the TP-260 and V6100 the channel capacity isn’t reduced.
Содержание TP-1610
Страница 28: ...28 V6100 and V7122 User Guide Reader s Notes ...
Страница 48: ...48 V6100 and V7122 User Guide Reader s Notes ...
Страница 72: ...72 V6100 and V7122 User Guide Reader s Notes ...
Страница 80: ...80 V6100 and V7122 User Guide Reader s Notes ...
Страница 151: ...V6100 and V7122 User Guide 151 Figure 83 Log off Prompt 2 Click OK in the prompt the Web session is logged off ...
Страница 152: ...152 V6100 and V7122 User Guide Reader s Notes ...
Страница 262: ...262 V6100 and V7122 User Guide Reader s Notes ...
Страница 284: ...284 V6100 and V7122 User Guide Reader s Notes ...
Страница 291: ...V6100 and V7122 User Guide 291 Figure 95 V7122 Startup Process ...
Страница 324: ...324 V6100 and V7122 User Guide Reader s Notes ...
Страница 354: ...354 V6100 and V7122 User Guide Reader s Notes ...
Страница 374: ...374 V6100 and V7122 User Guide Reader s Notes ...
Страница 382: ...382 V6100 and V7122 User Guide Figure 130 Example of a User Information File Reader s Notes ...
Страница 392: ...392 V6100 and V7122 User Guide Reader s Notes ...
Страница 409: ...V6100 and V7122 User Guide 409 Reader s Notes ...
Страница 413: ...V6100 and V7122 User Guide 413 Reader s Notes ...
Страница 425: ...V6100 and V7122 User Guide 425 Figure 145 UDP2File Utility Reader s Notes ...
Страница 431: ...V6100 and V7122 User Guide 431 Reader s Notes ...
Страница 447: ...V6100 and V7122 User Guide 447 Reader s Notes ...
Страница 449: ...V6100 and V7122 User Guide 449 Figure 146 Connection Module CM Figure 147 OSN Server Figure 148 Hard Drive Module HDMX ...
Страница 483: ...V6100 and V7122 User Guide 483 Reader s Notes ...