Field
Description
Authentication Method
Only for Internet Key Exchange =
9
Select the authentication method.
Possible values:
•
& 9)&
(default value): If you do not use certific-
ates for the authentication, you can select Preshared Keys.
These are configured during peer configuration in the IPSec
Peers. The preshared key is the shared password.
•
1-0 -$
: Phase 1 key calculations are authenticated
using the DSA algorithm.
•
;-0 -$
: Phase 1 key calculations are authenticated
using the RSA algorithm.
Local ID Type
Only for Internet Key Exchange =
9
Select the local ID type.
Possible ID types:
•
5//) D/ 1 * 5D1*"
•
!/ 0&&
•
8 0&&
•
0-*!1* 1&$& *"
Local ID
Only for Internet Key Exchange =
9
Enter the ID of your device.
For Authentication Method =
1-0 -$
or
;-0 -$!
the Use Subject Name from certificate option is dis-
played.
When you enable the Use Subject Name from certificate op-
tion, the first alternative subject name indicated in the certificate
is used, or, if none is specified, the subject name of the certific-
ate is used.
Note: If you use certificates for authentication and your certific-
ate contains alternative subject names (see
on
page 109), you must make sure your device selects the first al-
ternative subject name by default. Make sure you and your peer
both use the same name, i.e. that your local ID and the peer ID
Funkwerk Enterprise Communications GmbH
18 VPN
bintec Rxxx2/RTxxx2
317