Vigor2910 Series User’s Guide
109
algorithm and apply MD5 or SHA-1 authentication algorithm.
AES without Authentication
-Use AES encryption algorithm
and not apply any authentication scheme.
AES with Authentication-
Use AES encryption algorithm and
apply MD5 or SHA-1 authentication algorithm.
Advanced
Specify mode, proposal and key life of each IKE phase,
Gateway etc.
The window of advance setup is shown as below:
IKE phase 1 mode -
Select from
Main
mode and
Aggressive
mode. The ultimate outcome is to exchange security proposals
to create a protected secure channel.
Main
mode is more
secure than
Aggressive
mode since more exchanges are done
in a secure channel to set up the IPSec session. However, the
Aggressive
mode is faster. The default value in Vigor router is
Main mode.
IKE phase 1 proposal-
To propose the local available
authentication schemes and encryption algorithms to the VPN
peers, and get its feedback to find a match. Two combinations
are available for
Aggressive
mode and thirty for
Main
mode.
We suggest you select the combination that covers the most
schemes. Below shows the available proposals:
Содержание Vigor 2910
Страница 6: ......
Страница 20: ...Vigor2910 Series User s Guide 14 ...
Страница 79: ...Vigor2910 Series User s Guide 73 ...
Страница 194: ...Vigor2910 Series User s Guide 188 This page is left blank ...
Страница 231: ...Vigor2910 Series User s Guide 225 ...