Avaya Business Secure Router 222 Configuration - Basics Bedienungsanleitung Seite 239

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 451
  • Inhaltsverzeichnis
  • FEHLERBEHEBUNG
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 238
Chapter 13 VPN 239
Nortel Business Secure Router 222 Configuration — Basics
In Phase 1 you must:
Choose a negotiation mode.
Authenticate the connection by entering a preshared key.
Choose an encryption algorithm.
Choose an authentication algorithm.
Choose a Diffie-Hellman public-key cryptography key group (DH1, DH2,
and DH5).
Set the IKE SA lifetime. In this field you can determine how long an IKE SA
will stay up before it times out. An IKE SA times out when the IKE SA
lifetime period expires. If an IKE SA times out when an IPSec SA is already
established, the IPSec SA stays connected.
In Phase 2 you must:
Choose which protocol to use (ESP or AH) for the IKE key exchange.
Choose an encryption algorithm.
Choose an authentication algorithm
Choose whether to enable Perfect Forward Secrecy (PFS) using
Diffie-Hellman public-key cryptography–see “Perfect Forward Secrecy
(PFS)” on page 240. Select None (the default) to disable PFS.
Choose Tunnel mode or Transport mode.
Set the IPSec SA lifetime. In this field, you can determine how long the IPSec
SA will stay up before it times out. The Business Secure Router automatically
renegotiates the IPSec SA if there is traffic when the IPSec SA lifetime period
expires. The Business Secure Router also automatically renegotiates the
IPSec SA if both VPN switches have keep alive enabled, even if there is no
traffic. If an IPSec SA times out, the VPN switch must renegotiate the SA the
next time someone attempts to send traffic.
Negotiation Mode
The phase 1 Negotiation Mode you select determines how the Security
Association (SA) is established for each connection through IKE negotiations.
Seitenansicht 238
1 2 ... 234 235 236 237 238 239 240 241 242 243 244 ... 450 451

Kommentare zu diesen Handbüchern

Keine Kommentare