5 Configuring the Security Settings iPocket232 User Guide
23-CML000293 iPocket232 Inc. 47
2 Type the gateway address at the prompt (in the format xxx.xxx.xxx.xxx) and press Enter.
Encode/Authenticate Keys
Encode and Authenticate Keys are manually keyed in the iPocket232 by the user to provide IP packet
security. Encode and Authenticate Keys must be the same on both ends of the IPsec tunnel. You must
manually configure the remote end, a gateway or device, with the same encode and authentication keys
as you configured in the iPocket232.
The Encode Key is configured in up to three parts of 64 bits each. The Encode Key must be input as a
64-bit hex number for DES and a 192-bit hex number for 3DES. DES and 3DES remove the least
significant bit (LSB) from each byte, making the actual DES key 56 bits and the 3DES key 168 bits.
The Authenticate Key must be input as a 128-bit number in hex format. The Auth Key is configured in
two parts of 64 bits each. To set or change the Encode Key:
1 Choose Encode (Pt1) from the Secure IP Association sub-menu. You are prompted to enter bits 1–
64 of the encoding key in hex.
2 Type the 64 bits (16 characters) of the encoding key in hexadecimal format at the prompt, and press
Enter.
If you are using DES-MD5-96 Protocol, configure the Authenticate Key now.
3 For 3DES-MD5-96 Protocol, choose Encode (Pt2) from the Secure IP Association sub-menu.
You are prompted to enter bits 65–128 of the encoding key in hex.
4 Type the next part of the encoding key (16 more characters) in hexadecimal format at the prompt,
and press Enter.
5 Choose Encode (Pt3) from the Secure IP Association sub-menu.
You are prompted to enter bits 129–192 of the encoding key in hex.
6 Type the last part of the encoding key (16 characters) in hexadecimal format at the prompt, and press
Enter.
To set or change the Auth Key:
1 Choose Auth (Pt1) from the Secure IP Association sub-menu.
You are prompted to enter bits 1–64 of the authentication key in hex.
2 Type the first half of the authentication key (16 characters) in hexadecimal format at the prompt, and
press Enter.
3 Choose
Auth (Pt2)
from the Secure IP Association sub-menu.