105
Chapter 10 - Configuring VPN
ASUS SL1200
Name
Encryption
Algorithm
Authentication
Algorithm
D i f f i e - H e l l m a n
Group
Key Manage-
ment
Lifetime
(secs)
ike-
preshared-
3des-md5-
dh5
3DES
MD5
5
Pre-shared
Keys
3600
ike-pre-
shareddes-
sha1-dh5
DES
SHA-1
5
Pre-shared
Keys
3600
ike-pre-
shareddes-
md5-dh5
DES
MD5
5
Pre-shared
Keys
3600
Pre-configured IPSec proposals
IPSec proposals decide the type of encryption and authentication for the
traffic that flows between the endpoints of the tunnel.
Table 10.3 lists the default IPSec proposals available on the router.
Name
Encryption
Algorithm
Authentication
Algorithm
Encapsulation
Lifetime (Mbytes/sec)
ipsec-esp-
3des-sha1
3DES
SHA-1
ESP
75/3600
ipsec-esp-
3des-md5
3DES
MD5
ESP
75/3600
ipsec-esp-
des-sha1
DES
SHA-1
ESP
75/3600
ipsec-esp-
des-md5
DES
MD5
ESP
75/3600
ipsec-ah-
sha1
-
SHA-1
AH
75/3600
ipsec-ah-
md5
-
MD5
AH
75/3600
ipsec-esp-
3des
3DES
-
ESP
75/3600
ipsec-esp-
des
-
SHA-1
ESP
75/3600
ipsec-
esp-sha1
-
SHA-1
ESP
75/3600
ipsec-
esp-md5
-
MD5
ESP
75/3600
Table 10.3. Pre-configured IPSec proposals in the Internet
Security Router