Configuring Virtual Private Networking (VPN) Configure Internet Protocol security (IPsec)
Digi TransPort® Routers User Guide
503
Renegotiate after h hrs m mins s secs
How long the initial IKE Security Association stays in force. When this time expires, any attempt
to send packets to the remote system results in IKE attempting to establish a new SA.
3. Click Apply.
Command line
Command Instance Parameter Values Equivalent web parameter
ike n encalg des, 3des, aes Encryption
ike n keybits 0, 128, 192, 256 Encryption (AES Key length)
ike n authalg md5, sha1 Authentication
ike n rauthalgs sha256 PRF Algorithm
ike n aggressive on, off Mode
ike n ikegroup 1, 2, 5 MODP Group for Phase 1
ike n ipsecgroup 1, 2, 5 MODP Group for Phase 2
ike n ltime 1-28800 Renegotiate after h hrs m mins s secs
This CLI value is entered in seconds only.
Configure advanced IKE parameters
ÉWeb
1. Go to Configuration > Network > Virtual Private Networking (VPN) > IPsec > IKE n >
Advanced.
2. Configure the advanced IKEparameters as needed: