M350 Series User Manual 94
VPN>IPsec> Connections >Phrase 2 setting
The encryption algorithm.
Select from AES128 (default), AES192, AES256 or 3DES.
The integrity algorithm.
Select from MD5, SHA1 (default) or SHA256.
The Diffie Hellman Group.
Select from 1(768 bit), 2(1024 bit), 5(1536 bit) (default), 14(2048 bit), 15(3072
bit), 16(4096 bit), 17(6144 bit) or 18(8192 bit).
The length of a particular instance of a connection.
Select from 30 minutes, 1 hour, 2 hours, 3 hours, 6 hours, 12 hours or 24
hours.
The private subnet behind the router.
The available formats are A.B.C.D, A.B.C.D/M, A.B::C.D or A.B::C.D/M
If this value is blank, the connection will set it as the “Local Host” of Phase 1
setting.
Note: This option only work on Policy-based IPsec VPN type.
The private subnet behind the peer gateway.
The available formats are A.B.C.D, A.B.C.D/M, A.B::C.D or A.B::C.D/M
If this value is blank, the connection will set it as the “Remote Host” of Phase
1 setting.
Note: This option only work on Policy-based IPsec VPN type.
Restrict the VPN traffic to the particular protocol only.
Select from the Any, TCP, UDP or L2TP.
(3) IPsec Advance Setting