CHAPTER 3.
WEB CONFIGURATIONS
3
3
.
.
8
8
.
.
2
2
.
.
2
2
I
I
P
P
S
S
e
e
c
c
>
>
C
C
o
o
n
n
n
n
e
e
c
c
t
t
i
i
o
o
n
n
s
s
For Connections tab, the web UI provides the overview for each connection. Click button
to edit IPSec connection and set up the local and remote side.
Service > IPSec > General setting
Select from Disable or Enable. The default is Disable.
Select from IKEv1 or IKEv2.
Select from Enable or Disable (default).
(Note: The Aggressive mode is for IKEv2.)
Select from AES128 (default), AES192, AES256 or 3DES.
Select from MD5, SHA1 (default) or SHA256.
Select from 1(768 bit), 2(1024 bit), 5(1536 bit) (default)、14(2048
bit)、15(3072 bit)、16(4096 bit)、17(6144 bit) or 18(8192 bit).
Select from AES128 (default), AES192, AES256, 3DES or DES.
Select from MD5, SHA1 (default) or SHA256.
Select from off, 1(768 bit), 2(1024 bit), 5(1536 bit) (default)、14(2048
bit)、15(3072 bit)、16(4096 bit)、17(6144 bit) or 18(8192 bit).
Select from PSK (default) or RSA.
(Note: The EAP-TLS is for IKEv2.)
The password is for PSK authentication type.
DPD delay
(Deed Peer Detection)
Define the period time interval to detect dead peers. The default is
30 seconds.
DPD timeout
(Deed Peer Detection)
Define the timeout interval, after which all connections to a peer are
deleted in case of inactivity. The default is 150 seconds.