CONEL ER75i v2 — настройка IPsec туннеля через веб-браузер: пошаговое руководство [62/106]

Превью страниц Страница 62 / 106
CONEL XR5i v2F [62/106] Configuration over web browser
1. CONFIGURATION OVER WEB BROWSER
Continued from previous page
Item Description
Rekey Fuzz Percentage extension of Rekay Margin time
DPD Delay Time after which the IPsec tunnel functionality is tested
DPD Timeout The period during which device waits for a response
Authenticate Mode Using this parameter can be set authentication:
Pre-shared key sets the shared key for both sides of the
tunnel
X.509 Certificate allows X.509 authentication in multi-
client mode
Pre-shared Key Shared key for both sides of the tunnel to Pre-shared key authen-
ticate
CA Certificate Certificate for X.509 authentication
Remote Certificate Certificate for X.509 authentication
Local Certificate Certificate for X.509 authentication
Local Private Key Private key for X.509 authentication
Local Passphrase Passphrase for X.509 authentication
Extra Options Use this parameter to define additional parameters of the IPsec
tunnel, for example secure parameters etc.
Table 40: IPsec tunnel configuration
IPsec supports the following types of identifiers (ID) of both tunnel sides (Remote ID and
Local ID items):
IP address (e.g. 192.168.1.1)
DN (e.g. C=CZ,O=Conel,OU=TP,CN=A)
FQDN (e.g. @director.conel.cz) in front of FQDN must always be @
User FQDN (e.g. director@conel.cz)
The certificates and private keys have to be in PEM format. As certificate it is possible to
use only certificate which has start and stop tag certificate.
54

Содержание

198

Узнайте, как настроить IPsec туннель через веб-браузер, включая параметры аутентификации, сертификаты и ключи. Подробные инструкции и советы по конфигурации.

Кешбек Менеджер