51
VPN
Linksys
Phase 1 / Phase 2 DH Group:
Allows users to select Diffie-Hellman
groups: Group 1/ Group 2/ Group 5. DH
is a key exchange protocol.
Phase 1 / Phase 2 Encryption:
Allows users to set this VPN tunnel to
use any encryption mode. Note that this
parameter must be identical to that of
the remote encryption parameter: DES
(64-bit encryption mode), 3DES (128-bit
encryption mode), AES (the standard
of using security code to encrypt
information). It supports 128-bit, 192-
bit, and 256-bit encryption keys.
Phase 1 / Phase 2 Authentication:
Allows users to set this VPN tunnel to
use any authentication mode. Note that
this parameter must be identical to that
of the remote authentication mode:
MD5 or SHA1.
Phase 1 / Phase 2 SA Life Time:
The lifetime for this exchange code is set
to 28,800 seconds (8 hours) by default.
This allows the automatic generation
of other exchange passwords within
the valid time of the VPN connection to
guarantee security.
Perfect Forward Secrecy:
Check to enable perfect forward secrecy
(PFS). The Phase 2 shared key generated
during the IKE coordination will conduct
further encryption and authentication.
When PFS is enabled, hackers using
brute force to capture the key will not
be able to get the Phase 2 key in such a
short period of time.
The function is checked by default.
Preshared Key:
For the Auto (IKE) option, enter a
password of any digit or characters in the
text of Pre-shared Key, and the system
will automatically translate what users
entered as exchange password and
authentication mechanism during the
VPN tunnel connection. This exchange
password can be up to 30 characters.
Minimum Preshared Key
Complexity:
Check the box to enable Minimum Pre-
shared Key Complexity. The default is
enabled.
Preshared Key Strength Meter:
Check the Minimum Pre-shared Key
Complexity box and a strength meter
will appear.
•
Advanced (Only for IKE with Pre-shared Key mode)
You can click A to configure advanced settings for IKE with Pre-
shared key mode. To hide the settings, click Advanced-.
Содержание LRT214
Страница 1: ...LRT214 LRT224 User Guide ...
Страница 33: ...29 DHCP Linksys ...