DPN-144DG
GPON ONT Dual Band Wireless AC1200
VoIP Gateway with 1 GPON Port, 4 10/100/1000Base-T
Ports, 2 FXS Ports, and 1 USB Port
User Manual
Configuring via Web-based Interface
Parameter
Description
Enable PFS
Move the switch to the right to enable the PFS option (
Perfect
Forward Secrecy
). If the switch is moved to the right, a new
encryption key exchange will be used for Phase 2. This option
increases the security level of data transfer.
Second phase
PFSgroup type
A Diffie-Hellman key group for Phase 2. Select a value from the drop-
down list. The field is available if the
Enable PFS
switch is moved
to the right.
IPsec-SA lifetime
The lifetime of IPsec-SA keys in seconds. After the specified period it
is required to renegotiate the keys. Specify
0
if you don't want to limit
the lifetime of the keys.
If you need to specify IP addresses of local and remote subnets for creating a tunnel, click the
ADD
button in the
Tunneled Networks
section.
Figure 121. The page for adding an IPsec tunnel. The window for adding a tunneled network.
In the opened window, you can specify the following parameters:
Parameter
Description
Local network
A local subnet IP address and mask.
Remote subnet
A remote subnet IP address and mask.
To edit fields in the
Tunneled Networks
section, select the relevant line in the table. In the
opened window, change the needed parameters and click the
SAVE
button.
To remove a subnet, select the checkbox located to the left of the relevant line in the table and click
the
Delete
button. Also you can remove a subnet in the editing window.
After configuring all needed settings for the IPsec tunnel, click the
APPLY
button.
After clicking the
APPLY
button, the page with the
Tunnels
and
Status
sections opens. In the
Status
section, the current state of an existing tunnel is displayed.
To edit the parameters of an existing tunnel, in the
Tunnels
section, select the relevant tunnel in the
table. On the opened page, change the needed parameters and click the
APPLY
button.
Page
159
of 217