Avaya BCM 4.0 Networking Konfigurationsanleitung Seite 680

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 758
  • Inhaltsverzeichnis
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 679
680 Chapter 68 Virtual Private Networks (VPN)
N0060606N0060606
Enable tunnel <check box> Select to activate the tunnel.
Address Pool <IP address pool> Select the Remote IP Address Pool List you want to use for this
Remote User Account.
This allows you to assign a Dynamic IP Address (from the IP
Address Pool) to the Remote User when they connect.
Note1: If you select a Remote IP Address Pool List you do not have
to specify the Static IP Address or the Static subnet mask.
Note2: You must add a Remote IP Address Pool List before you
can select it from the drop list.
Static IP Address <IP address> Specify the IP address that is used by the remote computer, if the
remote computer is using a static IP address.
Note: You do not need to enter a Static IP address if the Account is
using a dynamic IP Address Pool.
Subnet Mask <IP address> Specify the Subnet Mask that is used by the remote computer, if
the remote computer is using a static IP address.
Note: You do not need to enter a Subnet Mask if the remote
computer is using dynamic IP addressing.
Settings
Rekey timeout (s) <0-359999> Specify the amount of time you can use a key before the tunnel is
re-negotiated.
You should limit the lifetime of a single key used to encrypt data or
else you will compromise the effectiveness of a single session key.
Use the Rekey Timeout setting to control how often new session
keys are exchanged between servers. You cannot set the Rekey
Timeout setting to less than three minutes, except to disable the
timeout by entering 0.
Default: 28800 secs.
Note: A setting of 0 disables the Rekey Timeout setting.
Rekey data count
(kB)
<0-1000000> Specify the amount of data you can transmit on the tunnel before
the tunnel is re-negotiated.
Default: 28800 Kbytes
Note:A setting of 0 disables the Rekey Data Count.
Note: If you set the Rekey Data Count too low, the tunnel is
re-negotiated too often and will consume extra system resources.
Idle timeout (s) <0-359999> Specify the amount of time the tunnel can remain idle before the
tunnel is closed. You cannot set the Idle Timeout setting to less
than three minutes, except to disable the timeout by entering 0.
Default: 900 secs.
Note: A setting of 0 disables the Idle timeout setting.
Enable PFS <check box> Enable Perfect Forward Secrecy (PFS).
With PFS, keys are not derived from previous keys. This ensures
that one key being compromised cannot result in the compromise
of subsequent keys.
Table 175 IPSec Remote User Tunnel settings (Sheet 2 of 3)
Attribute Value Description
Seitenansicht 679
1 2 ... 675 676 677 678 679 680 681 682 683 684 685 ... 757 758

Kommentare zu diesen Handbüchern

Keine Kommentare