Configuring with Web Based Management 
  4.7 "Security" menu 
SCALANCE SC-600 Web Based Management (WBM) 
Configuration Manual, 10/2021, C79000-G8976-C475-03 
335 
Description 
The table contains the following columns: 
•  Name 
Shows the name of the VPN connection to which the settings relate. 
•  Default Ciphers 
When enabled, a preset list is transferred to the VPN connection partner during 
connection establishment. The list contains combinations of the three algorithms 
(Encryption, Authentication, Key Derivation). To establish a VPN connection, the VPN 
connection partner must support at least one of these combinations. Additional 
information can be found in the section "IPsec VPN (Page 60)". 
•  Encryption 
For phase 2, select the required encryption algorithm. Can only be selected if "Default 
Ciphers" is disabled.  
Additional information can be found in the section "IPsec VPN (Page 60)". 
Note 
The AES modes CCM and GCM contain separate mechanisms for authenticating data. 
If you use a mode AES x CCM or AES x GCM for "Encryption", this will also be used 
for 
authentication. Then only the pseudo random function will be derived from the 
"Authentication" parameter.
 
•  Authentication 
Specify the method for calculating the checksum. Can only be selected if "Default 
Ciphers" is disabled.  
The following methods are supported: 
–  MD5 
–  SHA1 
–  SHA512 
–  SHA256 
–  SHA384