74
10.2.2 IPSec > Connections
For
Connections
tab, the web UI provides the overview for each connection. Click
button
to edit IPSec connection and set up the local and remote side.
Service > IPSec > General setting
Item
Description
Mode
Select from Disable or Enable. The default is Disable.
IKE
Protocol
Select from IKEv1 or IKEv2.
Aggressive mode
Select from Enable or Disable (default).
(
Note:
The Aggressive mode is for IKEv2.)
Encryption
Select from AES128 (default), AES192, AES256 or 3DES.
Hash
Select from MD5, SHA1 (default) or SHA256.
DH Group
Select from 1(768 bit), 2(1024 bit), 5(1536 bit) (default)
14(2048
bit)
15(3072 bit)
16(4096 bit)
17(6144 bit) or 18(8192 bit).
Encryption
Protocol
Select from ESP.
Encryption
Select from AES128 (default), AES192, AES256, 3DES or DES.
Hash
Select from MD5, SHA1 (default) or SHA256.
DH Group
Select from off, 1(768 bit), 2(1024 bit), 5(1536 bit) (default)
14(2048 bit)
15(3072 bit)
16(4096 bit)
17(6144 bit) or 18(8192
bit).
Authentication
Auth Type
Select from PSK (default) or RSA.
(
Note:
The EAP-TLS is for IKEv2.)
Auth Scret
The password is for PSK authentication type.
Advance
DPD delay
(Deed
Peer
Detection)
Define the period time interval to detect dead peers. The default is
30 seconds.
DPD timeout
(Deed
Peer
Detection)
Define the timeout interval, after which all connections to a peer
are deleted in case of inactivity. The default is 150 seconds.
www.e-rake.us.com