Configuring Virtual Private Networks (VPNs) and Security
Configuring VPNs
Cisco RV 120W Administration Guide 106
5
NOTE If either the Local or Remote identifier type is not an IP address, then
negotiation is only possible in Aggressive Mode. If FQDN, User FQDN or DER
ASN1 DN is selected, the router disables Main mode and sets the default to
Aggressive mode.
STEP 4 In the Local section, under Identifier Type, choose the ISAKMP identifier for this
router:
• Local WAN IP
• Internet Address/FQDN
• User FQDN
• DER ASN1 DN
STEP 5 If you chose Internet Address/FQDN, User FQDN, or DER ASN1 DN as the identifier
type, enter the IP address or domain name in the Identifier field.
STEP 6 In the Remote section, under Identifier Type, choose the ISAKMP identifier for this
router:
• Local WAN IP
• Internet Address/FQDN
• User FQDN
• DER ASN1 DN
STEP 7 If you chose Internet Address/FQDN, User FQDN, or DER ASN1 DN as the identifier
type, enter the IP address or domain name in the Identifier field.
IKE SA Parameters
The Security Association (SA) parameters define the strength and the mode for
negotiating the SA.
STEP 1 Choose the encryption algorithm, or the algorithm used to negotiate the SA:
• DES
• 3DES
• AES-128