![Draytek VIGOR3220 SERIES Скачать руководство пользователя страница 251](http://html.mh-extra.com/html/draytek/vigor3220-series/vigor3220-series_user-manual_2529396251.webp)
Vigor3220 Series User’s Guide
239
algorithm and not apply any authentication scheme.
AES with Authentication-Use AES encryption algorithm
and apply MD5 or SHA-1 authentication algorithm.
Advanced - Specify mode, proposal and key life of each IKE
phase, Gateway, etc.
The window of advance setup is shown as below:
IKE phase 1 mode -Select from Main mode and Aggressive
mode. The ultimate outcome is to exchange security
proposals to create a protected secure channel. Main mode
is more secure than Aggressive mode since more exchanges
are done in a secure channel to set up the IPsec session.
However, the Aggressive mode is faster. The default value in
Vigor router is Main mode.
IKE phase 1 proposal-To propose the local available
authentication schemes and encryption algorithms to
the VPN peers, and get its feedback to find a match.
Two combinations are available for Aggressive mode
and nine for Main mode. We suggest you select the
combination that covers the most schemes.
IKE phase 2 proposal-To propose the local available
algorithms to the VPN peers, and get its feedback to
find a match. Three combinations are available for both
modes. We suggest you select the combination that
covers the most algorithms.
IKE phase 1 key lifetime-For security reason, the
lifetime of key should be defined. The default value is
28800 seconds. You may specify a value in between 900
and 86400 seconds.
IKE phase 2 key lifetime-For security reason, the
lifetime of key should be defined. The default value is
3600 seconds. You may specify a value in between 600
and 86400 seconds.
Perfect Forward Secret (PFS)-The IKE Phase 1 key will
be reused to avoid the computation complexity in
phase 2. The default value is inactive this function.
Local ID-In Aggressive mode, Local ID is on behalf of the
IP address while identity authenticating with remote
VPN server. The length of the ID is limited to 47
characters.
Index(1-15) - Set the wireless LAN to work at certain time
interval only. You may choose up to 4 schedules out of the 15
schedules pre-defined in Applications >> Schedule setup.
The default setting of this field is blank and the function will
always work.
Содержание VIGOR3220 SERIES
Страница 1: ......
Страница 12: ......
Страница 56: ...Vigor3220 Series User s Guide 44 This page is left blank ...
Страница 87: ...Vigor3220 Series User s Guide 75 ...
Страница 97: ...Vigor3220 Series User s Guide 85 ...
Страница 130: ...Vigor3220 Series User s Guide 118 ...
Страница 147: ...Vigor3220 Series User s Guide 135 ...
Страница 184: ...Vigor3220 Series User s Guide 172 6 If there is no error click Finish to complete wizard setting ...
Страница 198: ...Vigor3220 Series User s Guide 186 This page is left blank ...
Страница 224: ...Vigor3220 Series User s Guide 212 This page is left blank ...
Страница 294: ...Vigor3220 Series User s Guide 282 This page is left blank ...
Страница 313: ...Vigor3220 Series User s Guide 301 ...
Страница 357: ...Vigor3220 Series User s Guide 345 ...
Страница 393: ...Vigor3220 Series User s Guide 381 11 Click OK to save the settings The class rules for WAN1 are defined as shown below ...
Страница 434: ...Vigor3220 Series User s Guide 422 4 Click OK to save the settings ...
Страница 484: ...Vigor3220 Series User s Guide 472 This page is left blank ...
Страница 530: ...Vigor3220 Series User s Guide 518 This page is left blank ...
Страница 558: ...Vigor3220 Series User s Guide 546 ...
Страница 565: ...Vigor3220 Series User s Guide 553 ...
Страница 569: ...Vigor3220 Series User s Guide 557 ...
Страница 571: ...Vigor3220 Series User s Guide 559 P Pa ar rt t I IX X D Dr ra ay yT Te ek k T To oo ol ls s ...
Страница 576: ...Vigor3220 Series User s Guide 564 This page is left blank ...
Страница 577: ...Vigor3220 Series User s Guide 565 P Pa ar rt t X X T Te el ln ne et t C Co om mm ma an nd ds s ...