DWR-921 4G LTE Router
User Manual
Configuring via Web-based Interface
Figure 111. The page for adding an IPsec tunnel. The First Phase / The Second Phase sections.
Parameter Description
The First Phase
First phase
encryption algorithm
Select an available encryption algorithm from the drop-down list.
Encryption mode
Select an encryption mode from the drop-down list.
Hashing algorithm Select a hashing algorithm from the drop-down list.
Size of hash
The length of the hash in bits.
Hashing mode Select a hashing mode from the drop-down list.
First phase DHgroup
type
A Diffie-Hellman key group for the First Phase. Select a value from
the drop-down list.
IKE-SA lifetime
The lifetime of IKE-SA keys in seconds. After the specified period it
is required to renegotiate the keys. The value specified in this field
should be greater than the value specified in the IPsec-SA lifetime
field.
Aggressive Mode
Move the switch to the right to enable the aggressive mode for mutual
authentication of the parties. Such a setting accelerates the connection
establishment, but reduces its security.
Page 134 of 255