Parameter name Default value Description and value range
NVIKEP1LIFESEC 432000 Specifies the IKE SA lifetime in
seconds. 3 to 8 ASCII numeric
digits. Valid values are: "600"
through "15552000".
NVIKEP2AUTHALG 0 Specifies the authentication
algorithm to use during IKE Phase
2 negotiation. 1 ASCII numeric
digit. Valid values are:
• 0 = Any
•
1 = MD5 (per RFC 2403)
• 2 = SHA (per RFC 2404)
NVIKEP2ENCALG 0 Specifies the encryption algorithm
to use during IKE Phase 2
negotiation. 1 ASCII numeric digit.
Valid values are:
• 1 = AES-CBC-128 (per RFC
3602)
• 2 = 3DES-CBC (per RFC 2451)
• 3 = DES-CBC (per RFC 2405)
• 4 = AES-CBC-192 (per RFC
3602)
• 5 = AES-CBC-256 (per RFC
3602)
NVIKEP2LIFESEC 432000 Specifies the IKE SA lifetime in
seconds. 3 to 8 ASCII numeric
digits. Valid values are: "600"
through "15552000".
NVIKEPSK " " (Null) Specifies the pre-shared key to be
used during IKE Phase 1
negotiation (also called the group
password in XAUTH. Zero to 30
ASCII characters.
NVIKEXCHGMODE 1 Specifies the IKE Phase 1
negotiation mode. 1 ASCII
numeric digit.Valid values are:
• 1 = Aggressive Mode.
•
2 = Main Mode Identity
Protection. (Per Section 5 in
RFC 2409.)
NVIPSECSUBNET 0.0.0.0/0 Specifies IP address ranges that
will use the VPN tunnel. 0 to 255
Table continues…
VPN parameters
March 2015 VPN Setup Guide for 9600 Series IP Telephones 53
Comments? infodev@avaya.com