Velocity Edge GX440 User's Guide Page 340

  • Download
  • Add to my manuals
  • Print
  • Page
    / 412
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 339
ALEOS 4.3.4 Software Configuration User Guide
340 4114514
*IPSEC1_IKE_AUTH
*IPSEC2_IKE_AUTH
*IPSEC3_IKE_AUTH
*IPSEC4_IKE_AUTH
*IPSEC5_IKE_AUTH
Query or set the IKE authentication type for # VPN.
AT*IPSEC[VPN number]_IKE_AUTH? to query
AT*IPSEC[VPN number]_IKE_AUTH=n to set
n=1 — MD5
n=2 — SHA1
n=3 — SHA 256
Note: MD5 is an algorithm that produces a 128-bit digest for authenti-
cation. SHA is a more secure algorithm that produces both 160-bit
(SHA1) and 256-bit (SHA256) digests.
*IPSEC1_IKE_DH
*IPSEC2_IKE_DH
*IPSEC3_IKE_DH
*IPSEC4_IKE_DH
*IPSEC5_IKE_DH
Query or set how the AirLink Device VPN creates an SA with the VPN
server. The DH (Diffie-Hellman) key exchange protocol establishes pre-
shared keys during the phase 1 authentication. The AirLink Device
supports three prime key lengths, including Group 1 (768 bits), Group 2
(1,024 bits), and Group 5 (1,536 bits).
AT*IPSEC[VPN number]_IKE_DH? to query
AT*IPSEC[VPN number]_IKE_DH=n to set
n=1 — DH1
n=2 — DH2 (default)
n=5 — DH5
*IPSEC1_IKE_ENCRYPT
*IPSEC2_IKE_ENCRYPT
*IPSEC3_IKE_ENCRYPT
*IPSEC4_IKE_ENCRYPT
*IPSEC5_IKE_ENCRYPT
Query or set the type/length of IKE encryption key used to encrypt/
decrypt ESP (Encapsulating Security Payload) packets for # VPN.
AT*IPSEC[VPN number]_IKE_ENCRYPT? to query
AT*IPSEC[VPN number]_IKE_ENCRYPT=n to set
n=1 — DES
•n=5 3DES
n=7 — AES-128 (default)
n=9 — AES-256
Note: 3DES supports 168-bit encryption. AES (Advanced Encryption
Standard) supports both 128-bit and 256-bit encryption.
*IPSEC1_IKE_LIFETIME
*IPSEC2_IKE_LIFETIME
*IPSEC3_IKE_LIFETIME
*IPSEC4_IKE_LIFETIME
*IPSEC5_IKE_LIFETIME
Query or set how long the # VPN tunnel is active (in seconds).
AT*IPSEC[VPN number]_IKE_LIFETIME? to query
AT*IPSEC[VPN number]_IKE_LIFETIME=n to set
n= 18086400
Default is 7200.
*IPSEC1_LIFETIME
*IPSEC2_LIFETIME
*IPSEC3_LIFETIME
*IPSEC4_LIFETIME
*IPSEC5_LIFETIME
Query or set how long the # VPN tunnel is active (in seconds).
AT*IPSEC[VPN number]_LIFETIME? to query
AT*IPSEC[VPN number]_LIFETIME=n to set
n= 18086400
Default is 7200.
Table D-6: VPN Commands (Continued)
Command Description
Page view 339
1 2 ... 335 336 337 338 339 340 341 342 343 344 345 ... 411 412

Comments to this Manuals

No comments