Routing
TransPort LR User Guide
87
The default is
AES – 128 bits
.
You can select more than one encryption protocol. IKE negotiates with the remote device
which encryption protocol to use. This setting does not need to match the IKE encryption
protocols configured on the remote device, but at least one of the encryption protocols must
be configured on the remote device.
n
The IKE Diffie-Hellman groups to use for the IPsec tunnel negotiation. The Diffie-Hellman
group options.
l
Group 5
(1536 bits)
l
Group 14
(2048 bits)
l
Group 15
(3072 bits)
l
Group 16
(4096 bits)
l
Group 17
(6144 bits)
l
Group 18
(8192 bits)
The default value is
Group14
.
You can select more than one Diffie-Hellman group. IKE negotiates with the remote device
which group to use. This setting does not need to match the IKE Diffie-Hellman groups
configured on the remote device, but at least of the Diffie-Hellman groups must be configured
on the remote device.
Additional configuration items
The following additional configuration settings are not typically configured to get an IPsec tunnel
working, but can be configured as needed:
Tunnel and key renegotiating
n
The lifetime of the IPsec tunnel before it is renegotiated. This defaults to
1 hour
(3600
seconds), and does not need to match the setting on the remote device.
n
The number of bytes, also known as lifebytes, sent on the IPsec tunnel before it is
renegotiated. By default, this setting is disabled, but can be configured up to
4 GB
. This
setting does not need to match the setting on the remote device.
n
The IKE lifetime before the keys are renegotiated. This defaults to
4800 seconds
and does
not need to match the IKE lifetime configured on the remote device.
n
The amount of time before the IPsec lifetime expires, the renegotiation should start. This
defaults to
540 seconds
and does not need to match the setting on the remote device.
n
The number of bytes before the IPsec lifebytes limit is reached before the key is is
renegotiated. By default, this is set to 0 and does not need to match the setting on the
remote device.
Содержание TransPort LR54-AA401
Страница 1: ...TransPort LR User Guide User Guide ...
Страница 89: ...Upload and download files TransPort LR User Guide 125 config da0 100 254 0 3KB s 00 00 sftp exit ...
Страница 101: ...Command descriptions TransPort LR User Guide 148 cpu Show CPU usage Syntax cpu Parameters ...
Страница 124: ...Command descriptions TransPort LR User Guide 171 pwd Displays the current directory name Syntax pwd Parameters ...