Setting Authentication Only
Authentication and Low Level
Encryption
Authentication and High
Level Encryption
Phase 1
Hash
Algorithm
MD5 SHA1 SHA1
Phase 1
Encryptio
n
Algorithm
DES 3DES 3DES
Phase 1
Diffie-
Hellman
Group
2 2 2
Phase 2
Security
Protocol
AH ESP ESP
Phase 2
Authentic
ation
Algorithm
HMAC-MD5-96/
HMAC-SHA1-96
HMAC-MD5-96/HMAC-
SHA1-96
HMAC-SHA1-96
Phase 2
Encryptio
n
Algorithm
Cleartext (NULL
encryption)
DES/3DES/AES-128/
AES-192/AES-256
3DES/AES-128/
AES-192/AES-256
Phase 2
PFS
Inactive Inactive 2
Encryption Key Auto Exchange Setting Items
When you specify a security level, the corresponding security settings are automatically configured,
but other settings, such as address type, local address, and remote address must still be configured
manually.
After you specify a security level, you can still make changes to the auto configured settings. When
you change an auto configured setting, the security level switches automatically to “User Setting”.
5. Enhanced Network Security
218