Zyxel OMNI ADSL LAN H [197/533] 16 8 vpn

Zyxel OMNI ADSL LAN H [197/533] 16 8 vpn
Ɋɭɤɨɜɨɞɫɬɜɨ ɩɨɥɶɡɨɜɚɬɟɥɹ ɞɥɹ ɦɚɪɲɪɭɬɢɡɚɬɨɪɨɜ ɫɟɪɢɢ OMNI ADSL LAN
ɗɤɪɚɧɵ VPN 16-21
Ɍɚɛɥ. 16-8 ɋɨɝɥɚɫɨɜɚɧɢɟ ɨɛɦɟɧɚ ɤɥɸɱɚɦɢ VPN: ɞɨɩɨɥɧɢɬɟɥɶɧɚɹ ɧɚɫɬɪɨɣɤɚ
ɉɈɅȿ ɈɉɂɋȺɇɂȿ
SA Life Time
(Seconds)
(ɉɪɨɞɨɥɠɢɬɟɥɶɧɨɫ
ɬɶ SA (ɜ
ɫɟɤɭɧɞɚɯ))
ȼ ɷɬɨɦ ɩɨɥɟ ɧɟɨɛɯɨɞɢɦɨ ɭɤɚɡɚɬɶ ɜɪɟɦɹ, ɤɨɬɨɪɨɟ ɞɨɥɠɧɨ ɩɪɨɣɬɢ ɞɨ ɬɨɝɨ, ɤɚɤ
ɚɜɬɨɦɚɬɢɱɟɫɤɢ ɧɚɱɧɟɬɫɹ ɫɨɝɥɚɫɨɜɚɧɢɟ ɧɨɜɨɝɨ SA-ɫɨɟɞɢɧɟɧɢɹ ɞɥɹ IKE. ȿɦɭ
ɦɨɠɟɬ ɛɵɬɶ ɩɪɢɫɜɨɟɧɨ ɡɧɚɱɟɧɢɟ ɜ ɩɪɟɞɟɥɚɯ ɨɬ 60 ɞɨ 3000000 ɫɟɤɭɧɞ (ɩɨɱɬɢ 35
ɞɧɟɣ).
Ɇɚɥɨɟ ɜɪɟɦɹ SA Life Time ɩɨɜɵɲɚɟɬ ɛɟɡɨɩɚɫɧɨɫɬɶ, ɬɚɤ ɤɚɤ ɲɥɸɡɚɦ VPN
ɩɪɢɯɨɞɢɬɫɹ ɱɚɳɟ ɨɛɧɨɜɥɹɬɶ ɲɢɮɪɭɸɳɢɟ ɢ ɚɭɬɟɧɬɢɮɢɰɢɪɭɸɳɢɟ ɤɥɸɱɢ. Ɉɞɧɚɤɨ
ɩɪɢ ɨɛɧɨɜɥɟɧɢɢ ɫɨɝɥɚɫɨɜɚɧɢɹ ɩɨ ɫɨɡɞɚɧɢɸ ɬɭɧɧɟɥɹ VPN ɜɫɟ ɩɨɥɶɡɨɜɚɬɟɥɢ,
ɢɦɟɸɳɢɟ ɜ ɷɬɨɬ ɦɨɦɟɧɬ ɞɨɫɬɭɩ ɤ ɭɞɚɥɟɧɧɵɦ ɪɟɫɭɪɫɚɦ, ɛɭɞɭɬ ɜɪɟɦɟɧɧɨ
ɨɬɤɥɸɱɟɧɵ.
Key Group (Ƚɪɭɩɩɚ
ɤɥɸɱɟɣ)
ɇɟɨɛɯɨɞɢɦɨ ɜɵɛɪɚɬɶ ɝɪɭɩɩɭ ɤɥɸɱɟɣ ɞɥɹ ɩɟɪɜɨɣ ɮɚɡɵ ɨɛɦɟɧɚ ɤɥɸɱɚɦɢ. DH1
(ɩɨ ɭɦɨɥɱɚɧɢɸ) ɨɡɧɚɱɚɟɬ ɝɪɭɩɩɭ Ⱦɢɮɮɢ-ɏɟɥɥɦɚɧɚ 1: 768-ɛɢɬɧɨɟ ɫɥɭɱɚɣɧɨɟ
ɱɢɫɥɨ. DH2 ɨɡɧɚɱɚɟɬ ɝɪɭɩɩɭ Ⱦɢɮɮɢ-ɏɟɥɥɦɚɧɚ 2: 1024-ɛɢɬɧɨɟ ɫɥɭɱɚɣɧɨɟ ɱɢɫɥɨ.
Phase 2 (Ɏɚɡɚ 2)
Active Protocol
(Ⱦɟɣɫɬɜɭɸɳɢɣ
ɩɪɨɬɨɤɨɥ)
ȼɨɫɩɨɥɶɡɭɣɬɟɫɶ ɪɚɫɤɪɵɜɚɸɳɢɦɫɹ ɫɩɢɫɤɨɦ ɞɥɹ ɜɵɛɨɪɚ ESP ɢɥɢ AH.
Encryption
Algorithm
(Ⱥɥɝɨɪɢɬɦ
ɲɢɮɪɨɜɚɧɢɹ)
ȼɵɛɟɪɢɬɟ ɢɡ ɪɚɫɤɪɵɜɚɸɳɟɝɨɫɹ ɫɩɢɫɤɚ ɨɩɰɢɸ DES, 3DES ɢɥɢ NULL.
ɉɪɢ ɢɫɩɨɥɶɡɨɜɚɧɢɢ ɫɬɚɧɞɚɪɬɚ DES ɤɚɤ ɨɬɩɪɚɜɥɹɸɳɚɹ, ɬɚɤ ɢ ɩɪɢɧɢɦɚɸɳɚɹ
ɫɬɨɪɨɧɚ ɞɨɥɠɧɵ ɡɧɚɬɶ ɨɞɢɧ ɢ ɬɨɬ ɠɟ ɫɟɤɪɟɬɧɵɣ ɤɥɸɱ, ɫ ɩɨɦɨɳɶɸ ɤɨɬɨɪɨɝɨ
ɨɫɭɳɟɫɬɜɥɹɟɬɫɹ ɲɢɮɪɨɜɚɧɢɟ ɢ ɞɟɲɢɮɪɨɜɚɧɢɟ ɫɨɨɛɳɟɧɢɣ, ɚ ɬɚɤɠɟ ɝɟɧɟɪɚɰɢɹ ɢ
ɩɪɨɜɟɪɤɚ ɚɭɬɟɧɬɢɮɢɤɚɰɢɨɧɧɨɝɨ ɤɨɞɚ ɫɨɨɛɳɟɧɢɣ. ȼ OMNI ADSL ɚɥɝɨɪɢɬɦ
ɲɢɮɪɨɜɚɧɢɹ DES ɢɫɩɨɥɶɡɭɟɬ 56-ɛɢɬɨɜɵɣ ɤɥɸɱ. Ⱥɥɝɨɪɢɬɦ Triple DES (3DES) -
ɷɬɨ ɪɚɡɧɨɜɢɞɧɨɫɬɶ DES, ɢɫɩɨɥɶɡɭɸɳɚɹ 168-ɛɢɬɨɜɵɣ ɤɥɸɱ. Ʉɚɤ ɫɥɟɞɫɬɜɢɟ,
ɚɥɝɨɪɢɬɦ 3DES ɧɚɞɟɠɧɟɟ ɩɪɨɬɨɤɨɥɚ DES. Ɉɞɧɚɤɨ ɨɧ ɬɪɟɛɭɟɬ ɛɨɥɶɲɟɣ
ɩɪɨɢɡɜɨɞɢɬɟɥɶɧɨɫɬɢ ɫɢɫɬɟɦɵ, ɱɬɨ ɨɬɪɚɠɚɟɬɫɹ ɜ ɭɜɟɥɢɱɟɧɢɢ ɜɪɟɦɟɧɢ ɨɠɢɞɚɧɢɹ
ɢ ɜ ɭɦɟɧɶɲɟɧɢɢ ɩɪɨɩɭɫɤɧɨɣ ɫɩɨɫɨɛɧɨɫɬɢ. Ⱦɥɹ ɧɚɫɬɪɨɣɤɢ ɬɭɧɧɟɥɹ ɛɟɡ
ɲɢɮɪɨɜɚɧɢɹ ɜɵɛɪɚɬɶ NULL. ɉɪɢ ɜɵɛɨɪɟ NULL ɲɢɮɪɨɜɚɥɶɧɵɟ ɤɥɸɱɢ ɧɟ
ɭɤɚɡɵɜɚɸɬɫɹ.
Authentication
ALgorithm
(Ⱥɥɝɨɪɢɬɦ
ɚɭɬɟɧɬɢɮɢɤɚɰɢɢ)
ȼɵɛɟɪɢɬɟ ɢɡ ɪɚɫɤɪɵɜɚɸɳɟɝɨɫɹ ɫɩɢɫɤɚ ɨɩɰɢɸ SHA1 ɢɥɢ MD5. Ⱦɥɹ
ɚɭɬɟɧɬɢɮɢɤɚɰɢɢ ɩɚɤɟɬɧɵɯ ɞɚɧɧɵɯ ɢɫɩɨɥɶɡɭɸɬɫɹ ɚɥɝɨɪɢɬɦɵ ɯɷɲɢɪɨɜɚɧɢɹ MD5
(Message Digest 5 - Ⱦɚɣɞɠɟɫɬ ɫɨɨɛɳɟɧɢɹ 5) ɢ SHA1 (Secure Hash Algorithm -
Ⱥɥɝɨɪɢɬɦ ɛɟɡɨɩɚɫɧɨɝɨ ɯɷɲɢɪɨɜɚɧɢɹ). Ⱥɥɝɨɪɢɬɦ SHA1 ɜ ɰɟɥɨɦ ɛɨɥɟɟ ɧɚɞɟɠɟɧ,
ɱɟɦ MD5, ɧɨ ɧɟɫɤɨɥɶɤɨ ɦɟɞɥɟɧɧɟɟ. ȼɵɛɟɪɢɬɟ MD5 ɞɥɹ ɦɢɧɢɦɚɥɶɧɨɣ ɡɚɳɢɬɵ ɢ
SHA-1 - ɞɥɹ ɦɚɤɫɢɦɚɥɶɧɨɣ.

Содержание

Скачать