DIR-X1530
AX1500 Wi-Fi 6 Gigabit Router
User Manual
Configuring via Web-based Interface
Figure 104. The page for adding an IPsec tunnel.
The First Phase / The Second Phase
sections.
Parameter
Description
The First Phase
First phase
encryption algorithm
Select an available encryption algorithm from the drop-down list.
Encryption mode
Select an encryption mode from the drop-down list.
Hashing algorithm
Select a hashing algorithm from the drop-down list.
Size of hash
The length of the hash in bits.
Hashing mode
Select a hashing mode from the drop-down list.
First phase DHgroup
type
A Diffie-Hellman key group for the First Phase. Select a value from
the drop-down list.
IKE-SA lifetime
The lifetime of IKE-SA keys in seconds. After the specified period it is
required to renegotiate the keys. The value specified in this field
should be greater than the value specified in the
IPsec-SA lifetime
field.
Aggressive Mode
Move the switch to the right to enable the aggressive mode for mutual
authentication of the parties. Such a setting accelerates the connection
establishment, but reduces its security.
Page
126
of 254