Zyxel VMG1312-B10B [247/394] Technical reference

Zyxel VMG1312-B10B [247/394] Technical reference
Chapter 20 VPN
VMG1312-B10B / VMG1312-B30B Series User’s Guide
247
20.3 Technical Reference
This section provides some technical background information about the topics covered in this
section.
20.3.1 IPSec Architecture
The overall IPSec architecture is shown as follows.
Encryption
Algorithm
Select which key size and encryption algorithm to use in the IKE SA. Choices
are:
DES - a 56-bit key with the DES encryption algorithm
3DES - a 168-bit key with the DES encryption algorithm
AES - AES encryption algorithm
Encryption
Key
This field is applicable when you select an Encryption Algorithm.
Enter the encryption key, which depends on the encryption algorithm.
DES - type a unique key 16 hexadecimal characters long
3DES - type a unique key 48 hexadecimal characters long
AES - type a unique key 32, 48 or 64 hexadecimal characters long
Authentication
Algorithm
Select which hash algorithm to use to authenticate packet data. Choices are
MD5, SHA1. SHA is generally considered stronger than MD5, but it is also
slower.
Authentication
Key
Enter the authentication key, which depends on the authentication algorithm.
MD5 - type a unique key 32 hexadecimal characters long
SHA1 - type a unique key 40 hexadecimal characters long
SPI Type a unique SPI (Security Parameter Index) in hexadecimal characters.
The SPI is used to identify the Device during authentication.
The Device and remote IPSec router must use the same SPI.
Apply Click Apply to save your changes.
Cancel Click Cancel to restore your previously saved settings.
Table 93 IPSec VPN: Add
LABEL DESCRIPTION

Содержание