Prestige 202H User’s Guide
26-20
VPN/IPSec Setup
Table 26-8
Menu 27.1.1.1 IKE Setup
FIELD DESCRIPTION
EXAMPLE
Perfect Forward
Secrecy (PFS)
Perfect Forward Secrecy (PFS) is disabled (
None
) by default in phase 2
IPSec SA setup. This allows faster IPSec setup, but is not so secure. Press
[SPACE BAR] and choose from
DH1
or
DH2
to enable PFS.
DH1
refers to
Diffie-Hellman Group 1 a 768 bit random number.
DH2
refers to Diffie-
Hellman Group 2 a 1024 bit (1Kb) random number (more secure, yet slower).
None
When you have completed this menu, press [ENTER] at the prompt “Press ENTER to Confirm…” to save
your configuration, or press [ESC] at any time to cancel.
26.12 Manual Key Setup
You only configure
Menu 27.1.1.2 – Manual Setup
when you select
Manual
in the
Key Management
field
in
Menu 27.1.1 – IPSec Setup
. Manual key management is useful if you have problems with
IKE
key
management.
26.12.1 Active
Protocol
This field is a combination of mode and security protocols used for the VPN. These parameters were
discussed earlier.
Table 26-9 Active Protocol: Encapsulation and Security Protocol
MODE SECURITY
PROTOCOL
Tunnel ESP
Transport AH
26.12.2
Security Parameter Index (SPI)
An SPI is used to distinguish different SAs terminating at the same destination and using the same IPSec
protocol. This data allows for the multiplexing of SAs to a single gateway. The
SPI
(Security Parameter
Index) along with a destination IP address uniquely identify a particular Security Association (SA). The
SPI
is transmitted from the remote VPN gateway to the local VPN gateway. The local VPN gateway then uses
the network, encryption and key values that the administrator associated with the SPI to establish the tunnel.
Current ZyXEL implementation assumes identical outgoing and incoming SPIs.
To edit this menu, move the cursor to the
Edit Manual Setup
field in
Menu 27.1.1 – IPSec Setup
press
[SPACE BAR]
to select
Yes
and then press
[ENTER]
to go to
Menu 27.1.1.2 – Manual Setup
.
Содержание Prestige 202H Series
Страница 1: ...Prestige 202H ISDN Router User s Guide Version 3 40 August 2003...
Страница 28: ......
Страница 36: ......
Страница 40: ......
Страница 52: ......
Страница 88: ......
Страница 92: ......
Страница 144: ......
Страница 148: ......
Страница 160: ......
Страница 184: ......
Страница 206: ......
Страница 224: ......
Страница 242: ......
Страница 258: ......
Страница 296: ...Appendices and Index V Part V Appendices and Index This part provides appendices and an index of key terms...
Страница 297: ......