Controller Security
Summit WM3000 Series Controller System Reference Guide376
1 Select Security > IPSec VPN from the main menu tree.
2 Click the Configuration tab.
3 Refer to the Configuration field to define the following:
4 Refer to the Transform Sets field to view the following data:
SA Lifetime (secs)
For IKE based security associations, define a SA Lifetime (in seconds)
forcing the periodic expiration and re-negotiation of peer credentials.
Thus, continually validating the peer relationship. The default value is
3600 seconds.
SA Lifetime (Kb)
Causes the security association to time out after the specified amount of
traffic (in kilobytes) have passed through the IPSec tunnel using the
security association. The default value is 4608000 Kb.
Apply
Click
Apply
to save any updates you may have made to the screen.
Revert
Click the
Revert
button to disregard any changes you have made and
revert back to the last saved configuration.
Name
Displays a transform set identifier used to differentiate transform sets.
The index is helpful when transform sets with similar attributes need to
be revised or discarded.
AH Authentication
Scheme
Displays the AH Transform Authentication scheme used with the index.
Options include:
•
None
- No AH authentication is used.
•
AH-MD5-HMAC
- AH with the MD5 (HMAC variant) authentication
algorithm.
•
AH-SHA-HMAC
- AH with the SHA (HMAC variant) authentication
algorithm.