D-Link DFL-1500 [127/271] Dfl 900 1500 user manual chapter 13 virtual private network ipsec

D-Link DFL-1500 [127/271] Dfl 900 1500 user manual chapter 13 virtual private network ipsec
DFL-900/1500 User Manual Chapter 13
Virtual Private Network – IPSec
119
Outgoing
Interface
The WAN interface you are going to build IPSec
tunnel with.
WAN interfaces WAN1
Peer’s IP Address
The IP address of remote site device, like
DFL-1500 VPN/Firewall Router.
IPv4 format 210.2.1.1
Outgoing SPI
The Outgoing SPI (Security Parameter Index)
value.
hex(600 ~ 600000) /
dec(1500 ~ 6300000)
hex: 2222
Incoming SPI
The Incoming SPI (Security Parameter Index)
value.
hex(600 ~ 600000) /
dec(1500 ~ 6300000)
hex: 1111
Encapsulation
Mode
Choose Tunnel or Transport mode, see Chapter
12 for details.
Transport / Tunnel Tunnel
ESP –
Encryption /
Authentication
Select the Encryption (DES, 3DES, AES or Null)
and Authentication (MD5, SHA1 or NULL)
Algorithm combination. And enter the key either
hex or string form separately.
Notice: You can not select both Encryption and
Authentication “NULL” type.
Encryption:
DES(64bits) /
3DES(192bits) /
AES(128, 192, 256bits) /
NULL
Authentication:
MD5(128bits) /
SHA1(160bits) /
NULL
Input format:
hex{0-9,a-f,A-F}/
str{text string}
ESP –
Encryption
(DES) /
Authentication
(MD5)
Action
AH -
Authentication
Use the Authentication method only. And enter
the key either hex or string form.
MD5(128bits) /
SHA1(160bits)
Input format:
hex{0-9,a-f,A-F}/
str{text string}
Disabled
Table 13-6 Add a IPSec Manual Key rule
Step 4. Detail settings of IPSec Manual
Key
For the detailed setting in the Manual Key. We
can press the Advanced button in the previous
page. Then set the parameter separately.
ADVANCED SETTINGS > VPN Settings > IPSec > Manual Key > Add
> Advanced
FIELD DESCRIPTION Range / Format EXAMPLE
Condition
Transport Layer
Protocol
Utilize this field to select some packets which are
specified protocol (ANY, TCP, UDP). If the
packets are not the specified protocol will not be
allowed to pass through IPSec tunnels.
ANY / TCP / UDP ANY

Содержание

Скачать