EtherFast
®
Cable/DSL VPN Router with 4-Port 10/100 Switch
35
Instant Broadband
®
Series
To get more details concerning your tunnel connection, click the
View Log
but-
ton.
The screen in Figure 6-21 will appear:
The VPN Log screen displays successful connections, transmissions and recep-
tions, and the types of encryption used.
Once you no longer have need of the tunnel, simply click the
Disconnect
but-
ton on the bottom of the VPN page.
To change advanced settings, select the
tunnel
whose advanced settings you
wish to change. Then click on
more...
to change the Advanced Settings for a
specific VPN tunnel.
Advanced Settings for Selected IPSec Tunnel
From the Advanced Settings screen, shown in Figure 6-22, you can adjust the
settings for specific VPN tunnels.
34
Phase 1
Phase 1 is used to create a security association (SA), often called the IKE SA.
After Phase 1 is completed, Phase 2 is used to create one or more IPSec SAs,
which are then used to key IPSec sessions.
Operation Mode
There are two modes: Main and Aggressive, and they exchange the same IKE
payloads in different sequences. Main mode is more common; however, some
people prefer Aggressive mode because it is faster. Main mode is for normal
usage and includes more authentication requirements than Aggressive mode.
Main mode is recommended because it is more secure. No matter which mode
is selected, the VPN Router will accept both Main and Aggressive requests
from the remote VPN device.
Encryption
Select the length of the key used to encrypt/decrypt ESP packets. There are two
choices: DES and 3DES. 3DES is recommended because it is more secure.
Authentication
Select the method used to authenticate ESP packets. There are two choices:
MD5 and SHA. SHA is recommended because it is more secure.
Figure 6-22
Figure 6-21
Downloaded from
www.Manualslib.com
manuals search engine