D-Link DFL-1500 [121/271] Dfl 900 1500 user manual chapter 13 virtual private network ipsec

D-Link DFL-1500 [121/271] Dfl 900 1500 user manual chapter 13 virtual private network ipsec
DFL-900/1500 User Manual Chapter 13
Virtual Private Network – IPSec
113
Key Group
Choose a Diffie-Hellman public-key
cryptography key group
DH1 / DH2 / DH5 DH2
Phase2
Encapsulation
View only, it is set previously and can not be
edited again.
Can not be edited Tunnel
Active Protocol
View only, it is set previously and can not be
edited again.
Can not be edited ESP
Encryption
Algorithm
Choose a type of encryption and authentication
algorithm combination or singly.
Encrypt and Authenticate
(DES, MD5) /
Encrypt and Authenticate
(DES, SHA1) /
Encrypt and Authenticate
(3DES, MD5) /
Encrypt and Authenticate
(3DES, SHA1) /
Encrypt and Authenticate
(AES, MD5) /
Encrypt and Authenticate
(AES, SHA1) /
Encrypt only (DES) /
Encrypt only (3DES) /
Encrypt only (AES) /
Authenticate only (MD5)
/ Authenticate only
(SHA1)
Encrypt and
Authenticate
(DESMD5)
SA Life Time
Set the IPSec SA lifetime. A value of 0 means
IKE SA negotiation never times out. See
Chapter
12 for details.
0~86400000 sec
0~1440000 min
0~24000 hour
28800 sec
Perfect Forward
Secrecy(PFS)
Enabling PFS means that the key is transient. This
extra setting will cause more security.
None / DH1 / DH2 /
DH5
DH1
Table 13-5 Setup Advanced feature in the IPSec IKE rule
Step 5. Remind to add a Firewall rule
After finishing IPSec rule settings, we need to add
a firewall rule. Here system shows a window
message to remind you of adding a firewall rule.
Just press the OK button to add a firewall rule.
ADVANCED SETTINGS > VPN Settings > IPSec > IKE > Add

Содержание

Скачать