Page 36
Tadpole M1400 Getting Started Guide
Configuring VPN on the Tadpole M1400
Summary of supported features
The following is a list of supported features on a VPN for the Tadpole M1400:
•
RFCs
for encryption and authentication, key generation and maintenance, dead peer
detection, and for connection behind NAT devices.
•
Internet Protocol Encapsulating Security Payload (IP ESP)
encryption and
authentication algorithms to ensure confidentiality and integrity of data.
•
Internet Key Exchange (IKE)
; Identity Protection Mode and Aggressive Mode for Phase
1 negotiations, Quick Mode for Phase 2 negotiations.
•
Perfect Forward Security (PFS)
uses a selected Diffie-Hellman group as the source of
key material. This ensures that data established by Phase 2 keys is not affected if Phase 1
keys are compromised.
•
Dynamic IP Address Assignment
is supported using
Mode Config
.
•
User identification using standard user name/password mechanisms or using
RSA
SecurID
authentication.
•
Dead Peer Detection (DPD)
allows a VPN peer to send messages to the Tadpole M1400
to detect if a connection is still functioning.
•
Connection behind a
Network Address Translation (NAT)
is automatically detected by
the VPN client, and is supported with
NAT-Traversal.
Содержание M1400
Страница 1: ......
Страница 58: ...Page 58 Tadpole M1400 Getting Started Guide Notes...
Страница 67: ...Tadpole M1400 Getting Started Guide Page 67...
Страница 68: ......