User manual

Table Of Contents
77
Tunnel access from local IP
addresses
Specify the acceptable host IP on the local
side. Choose Single or Subnet.
IP Address/Subnet Mask for VPN If you chose Single, please enter the host IP
address for VPN. If you chose Subnet
, please
enter the subnet information for VPN.
Tunnel access from remote IP
addresses
Specify the acceptable host IP on the remote
side. Choose Single or Subnet.
IP Address/Subnet Mask for VPN If you chose Single, please enter the host IP
address for VPN. If you chose Subnet, ple
ase
enter the subnet information for VPN.
Key Exchange Method Select from Auto(IKE) or Manual
For the Auto(IKE) key exchange method, select Pre-shared key or Certificate (X.509)
authentication. F or Pre-shared key authentication you must enter a key, while for
Certificate (X.509) authentication you must select a certificate from the list.
See the tables below for a summary of all available options.
Auto(IKE) Key Exchange Method
Pre-Shared Key / Certificate (X.509)
Input Pre-shared key / Choose Certificate
Perfect Forward Secrecy Enable or Disable
Advanced IKE Settings Select Show Advanced Settings to reveal
the advanced settings options shown below.
Advanced IKE Settings Select Hide Advanced Settings to hide the
advanced settings options shown above.
Phase 1 / Phase 2 Choose settings for each phase, the available
options are separated with a “/” character.
Mode Main / Aggressive
Encryption Algorithm DES / 3DES / AES 128,192,256
Integrity Algorithm MD5 / SHA1
Select Diffie-Hellman Group 768 8192 bit
Key Life Time Enter your own or use the default (1 hour)