Ether232Plus User Guide 5 Configuring the Security Settings
02-CML000057 Precidia Technologies Inc. 47
2 Type the gateway address at the prompt (in the format xxx.xxx.xxx.xxx) and press
Enter
.
Encode/Authenticate Keys
Encode and Authenticate Keys are manually keyed in the Precidia unit by the user to
provide IP packet security. Encode and Authenticate Keys must be the same on both
ends of the IPsec tunnel. You must manually configure the remote end, a gateway or
device, with the same encode and authentication keys as you configured in the
Precidia unit.
The Encode Key is configured in up to three parts of 64 bits each. The Encode Key
must be input as a 64-bit hex number for DES and a 192-bit hex number for 3DES.
DES and 3DES remove the least significant bit (LSB) from each byte, making the
actual DES key 56 bits and the 3DES key 168 bits.
The Authenticate Key must be input as a 128-bit number in hex format. The Auth Key
is configured in two parts of 64 bits each.
To set or change the Encode Key:
1 Choose
Encode (Pt1)
from the Secure IP Association sub-menu.
You are prompted to enter bits 1–64 of the encoding key in hex.
2 Type the 64 bits (16 characters) of the encoding key in hexadecimal format at the
prompt, and press
Enter
.
If you are using DES-MD5-96 Protocol, configure the Authenticate Key now.
3 For 3DES-MD5-96 Protocol, choose
Encode (Pt2)
from the Secure IP Association
sub-menu.
You are prompted to enter bits 65–128 of the encoding key in hex.
4 Type the next part of the encoding key (16 more characters) in hexadecimal format
at the prompt, and press
Enter
.
5 Choose
Encode (Pt3)
from the Secure IP Association sub-menu.
You are prompted to enter bits 129–192 of the encoding key in hex.
6 Type the last part of the encoding key (16 characters) in hexadecimal format at the
prompt, and press
Enter
.
To set or change the Auth Key:
1 Choose
Auth (Pt1)
from the Secure IP Association sub-menu.
You are prompted to enter bits 1–64 of the authentication key in hex.