Vigor2960 Series User’s Guide
319
4
4
.
.
9
9
.
.
5
5
I
I
P
P
s
s
e
e
c
c
G
G
e
e
n
n
e
e
r
r
a
a
l
l
S
S
e
e
t
t
u
u
p
p
The IPsec services can provide access control, connectionless integrity, data origin
authentication, rejection of replayed packets that is a form of partial sequence integrity, and
confidentiality by encryption. These objectives are met through the use of two traffic
security protocols, the Authentication Header (AH) and the Encapsulating Security Payload
(ESP), and through the use of cryptographic key management procedures and protocols.
Available parameters are listed as follows:
Item Description
Preshared Key
Specify a key for IKE authentication
Confirm Pre-Shared Key- Retype the characters to confirm
the pre-shared key.
WAN Profile
Choose a WAN interface profile to be used.
To clear the selected one, click
to remove current
profile selections.
DHCP LAN Profile
Choose one of the LAN profiles for VPN.
IKE Port
Type the UDP port number for Internet Key Exchange (IKE)
traffic to the VPN server.
NAT-T Port
Type the UDP port number for IPsec network address
translator traversal (NAT-T) traffic.
IPsec MSS
Type the maximum segment size (MSS) for IPsec VPN
tunnel.
Apply
Click it to save the configuration.
Cancel
Click it to discard the settings configured in this page.
Enter all of the settings and click Apply.