
Configuring IPSec Settings
1648-088
Internet Protocol Security (IPSec or IPsec) is a protocol suite for encrypting data transported over a network, including
Internet networks. While TLS only encrypts data used on a specific application, such as a Web browser or an e-mail
application, IPSec encrypts either whole IP packets or the payloads of IP packets, offering a more versatile security
system. The IPSec of the machine works in transport mode, in which the payloads of IP packets are encrypted. With
this feature, the machine can connect directly to a computer that is in the same virtual private network (VPN). Check
the system requirements ( Management Functions(P. 528) ) and set the necessary configuration on the computer
before you configure the machine.
Using IPSec with IP address filter
●
IP address filter settings are applied before the IPSec policies. Specifying IP Addresses for Firewall
Settings(P. 237)
Configuring IPSec Settings
Before using IPSec for encrypted communication, you need to register security policies (SP). A security policy consists
of the groups of settings described below. After registering policies, specify the order in which they are applied.
Selector
Selector defines conditions for IP packets to apply IPSec communication. Selectable conditions include IP
addresses and port numbers of the machine and the devices to communicate with.
IKE
IKE configures the IKEv1 that is used for key exchange protocol. Note that instructions vary depending on the
authentication method selected.
[Pre-Shared Key Method]
This authentication method uses a common key word, called Shared Key, for communication between the
machine and other devices. Enable TLS for the Remote UI before specifying this authentication method (
Configuring the Key and Certificate for TLS(P. 246) ).
[Digital Signature Method]
The machine and the other devices authenticate each other by mutually verifying their digital signatures.
Generate or install the key and certificate beforehand ( Registering the Key and Certificate for Network
AH/ESP
Specify the settings for AH/ESP, which is added to packets during IPSec communication. AH and ESP can be used
at the same time. You can also select whether or not to enable PFS for tighter security.
Managing the Machine
257
Содержание imageCLASS LBP612Cdw
Страница 1: ...imageCLASS LBP654Cdw LBP612Cdw User s Guide USRMA 1741 00 2017 03 en Copyright CANON INC 2017 ...
Страница 26: ...1 To finish the Setup Guide select End When the Setup Guide is complete the Home screen appears Setting Up 20 ...
Страница 55: ...Configuring DNS P 65 Setting Up 49 ...
Страница 59: ...LINKS Configuring Printer Ports P 54 Setting Up 53 ...
Страница 62: ...LINKS Setting Up Print Server P 57 Setting Up 56 ...
Страница 65: ...3 Follow the on screen instructions to install the drivers LINKS Printing from a Computer P 167 Setting Up 59 ...
Страница 89: ...Setting Sounds 162 Entering Sleep Mode 163 Basic Operations 83 ...
Страница 102: ...LBP654Cdw LBP612Cdw LINKS Loading Paper in the Paper Drawer P 126 Basic Operations 96 ...
Страница 147: ...Basic Operations 141 ...
Страница 163: ...6 Select Apply Basic Operations 157 ...
Страница 175: ...LINKS Checking the Printing Status and Log P 173 Printing 169 ...
Страница 178: ...LINKS Basic Printing Operations P 167 Checking the Printing Status and Log P 173 Printing 172 ...
Страница 288: ...LINKS Remote UI Screen P 276 Managing the Machine 282 ...
Страница 334: ... Menu Preferences Accessibility Cursor Movement Type Select Auto or Manual Setting Menu List 328 ...
Страница 447: ...Displays the total number of pages for color printing Maintenance 441 ...
Страница 456: ...Troubleshooting 450 ...
Страница 580: ... 18 MD4 RSA Data Security Inc MD4 Message Digest Algorithm ...
Страница 609: ... 17 MD4 RSA Data Security Inc MD4 Message Digest Algorithm ...