Field
Description
the keys of the phase 1 SA have become known.
The field has the following options:
•
#FDE (&
: During the Diffie-Hellman key calculation,
modular exponentiation at 768 bits is used to create the en-
cryption material.
•
# - (&
(default value): During the Diffie-Hellman key
calculation, modular exponentiation at 1024 bits is used to
create the encryption material.
•
# CD (&
: During the Diffie-Hellman key calculation,
modular exponentiation at 1536 bits is used to create the en-
cryption material.
Lifetime
Define how the lifetime is defined that will expire before phase
2 SAs need to be renewed.
The new SAs are negotiated shortly before expiry of the cur-
rent SAs. As for RFC 2407, the default value is eight hours,
which means the key must be renewed once eight hours have
elapsed.
The following options are available for defining the Lifetime:
• Input in Seconds: Enter the lifetime for phase 2 key in
seconds. The value can be a whole number from
to
-F-ECD-F
. The default value is
F
.
• Input in kBytes: Enter the lifetime for phase 2 keys as
amount of data processed in Kbytes. The value can be a
whole number from
to
-F-ECD-F
. The default value is
.
Rekey after : Specify the percentage in the course of the life-
time at which the phase 2 keys are to be regenerated.
The percentage entered is applied to both the lifetime in
seconds and the lifetime in Kbytes.
The default value is
E
%.
The menu Advanced Settings consists of the following fields:
Fields in the Advanced Settings menu
Gigaset Communications GmbH
13 VPN
hybird 120 Gigaset Edition
275