Tunnel | IKE Policies (IPSec)

Last Updated : Jan 18, 2018 |

Navigation: Tunnel | IKE Policies (IPSec)

These settings are not mergeable. Changes to these settings will require a reboot of the system.

Field

Descripition

Shared Secret/Confirm Password

The password used for authentication. This must be matched at both ends of the tunnel.

Exchange Type

Default = ID Prot

Aggressive provides faster security setup but does not hide the ID's of the communicating devices. ID Prot is slower but hides the ID's of the communicating devices.

Encryption

Default = 3DES CBC

Select the encryption method used by the tunnel. The option is:

  • 3DES CBC

Authentication

Default = SHA

The method of password authentication. The option is:

  • SHA

DH Group

Default = Group 1

Life Type

Default = KBytes

Sets whether Life (below) is measured in seconds or kilobytes.

Life

Range = 0 to 99999999.

Determines the period of time or the number of bytes after which the SA key is refreshed or re-calculated.