Velocity Edge GX440 User's Guide Page 339

  • Download
  • Add to my manuals
  • Print
  • Page
    / 412
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 338
Rev 1 Oct.13 339
VPN
Table D-6: VPN Commands
Command Description
*IPSEC1_AUTH
*IPSEC2_AUTH
*IPSEC3_AUTH
*IPSEC4_AUTH
*IPSEC5_AUTH
Query or set the authentication type for # VPN.
AT*IPSEC[VPN number]_AUTH? to query
AT*IPSEC[VPN number]_AUTH=n to set
n=0 — None
n=1 — MD5
n=2 — SHA1 (default)
n=3 — SHA 256
Note: MD5 is an algorithm that produces a 128-bit digest for authenti-
cation. SHA is a more secure algorithm that produces both 160-bit
(SHA1) and 256-bit (SHA256) digests.
*IPSEC1_DH
*IPSEC2_DH
*IPSEC3_DH
*IPSEC4_DH
*IPSEC5_DH
Query or set how the AirLink Device VPN creates an SA with the VPN
server. The DH (Diffie-Hellman) key exchange protocol establishes pre-
shared keys during the phase 1 authentication. The AirLink Device
supports three prime key lengths, including Group 1 (768 bits), Group 2
(1,024 bits), and Group 5 (1,536 bits).
AT*IPSEC[VPN number]_DH? to query
AT*IPSEC[VPN number]_DH=n to set
n=0 — None
n=1 — DH1
n=2 — DH2 (default)
n=5 — DH5
*IPSEC1_ENCRYPT
*IPSEC2_ENCRYPT
*IPSEC3_ENCRYPT
*IPSEC4_ENCRYPT
*IPSEC5_ENCRYPT
Query or set the type/length of encryption key used to encrypt/decrypt
ESP (Encapsulating Security Payload) packets for # VPN.
AT*IPSEC[VPN number]_ENCRYPT? to query
AT*IPSEC[VPN number]_ENCRYPT=n to set
n=0 — None
n=1 — DES
•n=2 3DES
n=3 — AES-128 (default)
n=7 — AES-256
Note: 3DES supports 168-bit encryption. AES (Advanced Encryption
Standard) supports both 128-bit and 256-bit encryption.
*IPSEC1_GATEWAY
*IPSEC2_GATEWAY
*IPSEC3_GATEWAY
*IPSEC4_GATEWAY
*IPSEC5_GATEWAY
Query or set the IP address of the server that # VPN client connects to.
AT*IPSEC[VPN number]_GATEWAY? to query
AT*IPSEC[VPN number]_GATEWAY=[IP address] to set
Page view 338
1 2 ... 334 335 336 337 338 339 340 341 342 343 344 ... 411 412

Comments to this Manuals

No comments