Configuration Guide

23
Parameter Description
on the security gateway side.
Right Subnet IP address of the remote subnet, which must be consistent
with the security gateway side. M
essage within this address
range will be packed as a tunnel.
Right Id Identification of the server end (0-
48 digits string). It must be
consistent with the security gateway side. If there is no
security gateway right identifier, leave this field empty.
SecretKey File name of private key. When the auth is set to psk, the
value is the password of authentication.
Caution:
It is highly recommended that for the Advanced Setting fields you use
the default values. Improper changes may lead to system exception.
The Advanced Setting fields become particularly important to network operations
as areas become denser the users.
The description of advanced parameters is shown in Table 5-6.
Table 5-6 Advanced Parameter Description of IPsec Tunnel Mode
Parameter Description
Left Id Identification of the client end (0-48 digits string). It must be
consistent with the security gateway side.
If there is no security
gateway left identifier, leave this field empty.
LeftCert
If set left Auth topubkey, the parameter needs to be set.
Certificate name. On this version is clientCert.derpsk.
LeftSourceIp Virtual address allocation assigned by the system.
If absent, use the local IP address
Left Subnet IP address of the local subnet.
Fragmentation The type of fragmentation.
YES
ACCEPT
FORCE
NO
IKE Encryption
Internet Key Exchange (IKE) encryption method. IKE is a protocol
used to ensure security for virtual private network (VPN)
negotiation and remote host or network access.
AES128
AES256
3DES
DES