Parameter
Description
Destination Address IP address of the tunnel remote station
Map Interface Interface of the router through which the connection is to be established
IKE Version IKEv1 or IKEv2
IKEv1 Policy The ID number of the previously created IKEv1 policy.
IPsec Policy The name of the previously created IPsec policy
Negotiation Mode Main Mode or Agressive Mode
Authentication Type Shared Key or Certificate
Local Subnet The router subnet
Remote Subnet The remote station subnet
IKE Advance(Phase1):
Parameter
Description
Local ID IP Address, FQDN or User FQDN
Remote ID IP Address, FQDN or User FQDN
IKE Keepalive Switches IKE Keepalive on or o
DPD Timeout Timeout for a DPD packet
DPD Interval Interval of DPD packets
XAUTH Switches XAUTH on or o
Xauth User Name XAUTH User Name
Xauth Password XAUTH Password
IPsec Advance(Phase2):
Parameter
Description
PFS Perfect Forward Secrecy Group
IPsec SA Lifetime Validity period of SA before it is recreated
IPsec SA Idletime SAs associated with inactive peers can be deleted before the global lifetime expires.
Tunnel Advance:
Welotec GmbH
Zum Hagenbach 7
48366 Laer
www.welotec.com
info@welotec.com
+49 2554 9130 00
Page 108