IPSec set up IPSec
Proposal
An IKE phase 2 proposal is a combination of one or multiple
encryption algorithms, one or multiple authentication algorithms,
one strength of DH key exchange if PFS is enabled, and the key
lifetime.
Select the encryption and authentication algorithms, strength of DH
key exchange, and the key lifetime for the IKE phase 2 proposal that
will be used in the IKE Phase 2 negotiations.
Make sure the Phase 2 proposals of the both units performing the
Phase 2 negotiations are compatible. Incompatible proposals cause
Phase 2 negotiations going to failure.
FortiWAN Handbook
Fortinet Technologies Inc.
193