Version 6.2  321  February 2011 
SIP User's Manual   3. Web-Based Management 
 
9  Hash Algorithm: Select the hash algorithms that the device attempts to 
use when negotiating with the IPSec peer. 
9  Group Description Attribute: Select the Diffie-Hellman (DH) group 
description(s). Diffie-Hellman is a public-key cryptography scheme that 
allows two parties to establish a shared secret over an insecure 
communications channel. 
IPSec Automatic Phase 2 – Key Definition: 
Figure  3-273: IPSec Tab - IPSec Automatic Phase 2 
 
9  Life Time in Seconds: The length of time before a security association 
automatically performs renegotiation. 
9  Use Perfect Forward Secrecy (PFS): Select whether Perfect Forward 
Secrecy of keys is required on the connection's keying channel (with 
PFS, penetration of the key-exchange protocol does not compromise 
keys negotiated earlier). Deselecting this option hides the next 
parameter. 
- Group Description Attribute: Select whether to use the same group 
chosen in phase 1, or reselect specific groups. 
9  Encryption Algorithm: Select the encryption algorithms that the device 
attempts to use when negotiating with the IPSec peer. 
9  Authentication Algorithm (for ESP protocol): Select the 
authentication algorithms that the device attempts to use when 
negotiating with the IPSec peer. 
9  Hash Algorithm (for AH protocol): Select the hash algorithms that the 
device attempts to use when negotiating with the IPSec peer.