Robustel GoRugged R3000 User Guide
RT_UG_R3000_v.3.0.3 04.02.2017 65 / 124
Confidential
When choose “Authentication Type” to “xAuth PSK”.
When choose “Authentication Type” to “xAuth CA”.
Select from “Main” and “Aggressive” for the IKE negotiation mode in phase
1. If the IP address of one end of an IPSec tunnel is obtained dynamically,
the IKE negotiation mode must be aggressive. In this case, SAs can be
established as long as the username and password are correct.
Select from “MD5” and “SHA1”to be used in IKE negotiation.
MD5: Uses HMAC-SHA1.
SHA1: Uses HMAC-MD5.
Select from “3DES”, “AES128” and “AES256”to be used in IKE negotiation.
3DES: Uses the 3DES algorithm in CBC mode and 168-bit key.
AES128: Uses the AES algorithm in CBC mode and 128-bit key.
AES256: Uses the AES algorithm in CBC mode and 256-bit key.