Twin WAN Series – User Guide | v1
•
AutoKey (IKE)
- With Auto Key exchange a key is randomly generated.
While this is much easier and more convenient, by the nature of its design it
does not work with NAT. There are two types of operation modes can be used
- Main Mode & Aggressive Mode (explained below).
Phase 1 Negotiation
There are 2 options in this drop-down box - Main Mode and Aggressive Mode. Main
Mode provides identity protection for the remote and the local side. Aggressive Mode
does not provide identity protection but it is faster to negotiate.
•
Main Mode
accomplishes a phase one IKE exchange by establishing a secure
channel.
•
Aggressive Mode
is another way of accomplishing a phase one exchange. It
is faster and simpler than main mode but does not provide identity protection
for the negotiating nodes.
Perfect Forward Secrecy (PFS)
This is a more secure method of Virtual Private Networking. If the one key is
compromised, the previous and future keys will not be compromised.
Preshared Key
This is a "pass code" and must be the same one both the local and the remote side. If this
key does not match, the VPN tunnel will never connect. You may put in characters and
numbers. You may also put in HEX by entering "0x" before the sequence.
Key Lifetime
This allows you to specify a length to time or amount of transfer before the Security
Association is renegotiated.
Copyright © 2005 WINS International, LLC dba XiNCOM | All rights reserved.
67