Field
Description
hash algorithm developed by NSA (United States National Se-
curity Association). It is rated as secure, but is slower than
MD5. It is used with a 96 bit digest length for IPSec.
•
?.-
: RipeMD 160 is a 160 bit hash algorithm. It is
used as a secure replacement for MD5 and RipeMD.
•
)
: Tiger 192 is a relatively new and very fast al-
gorithm.
•
>,
: SH2 (Secure Hash Algorithmus #2) is a hash al-
gorithm which has been designed to supersede SHA 1. It can
be used with hash lengths of 256, 384 or 512 bits.
•
>,
: SHA-2 with 384 bit hash length.
•
>,
: SHA-2 with 512 bit hash length.
Depending on the hardware of your device some options may
not be available.
Please note that the quality of the algorithms is subject to relat-
ive aspects and may change due to mathematical or crypto-
graphic developments.
DH Group
The Diffie-Hellman group defines the parameter set used as the
basis for the key calculation during phase 1. "MODP" as sup-
ported by bintec elmeg devices stands for "modular exponenti-
ation".
The following groups with their corresponding bit values are
available:
•
"( &#
•
" &#
•
" &#
•
" &#
•
"( &#
•
" &#
Depending on the hardware of your device some options may
not be available.
Lifetime
Create a lifetime for phase 1 keys.
The following options are available for defining the Lifetime:
14 VPN
bintec elmeg GmbH
254
be.IP 4isdn