User`s guide
Vigor2760 Series User’s Guide
173
Peer ID (DN) –If you choose Accept custom peer DN, you
have to type the name you got from the peer end in the field of
Peer ID (DN). Only the specified one is acceptable. The data
shall be typed as, e.g.,
“C=TW, ST=Hsinchu, L=Hokou, O=Draytek, OU=RD,
CN=John/emailAddress=john@test.com” or
“C=TW”, O=Draytek”.
Local ID (optional) and Peer ID (optional) - This option is
available when Pre-shared Key is selected as Authentication
Method above. You can define a name to be used by local user
and the peer user. If no name specified here, the system will
use My WAN IP as the local ID and the Remote Host as the
Peer ID configured in this web page.
Phase1 Mode –Select from Main mode and Aggressive mode.
The ultimate outcome is to exchange security proposals to
create a protected secure channel. Main mode is more secure
than Aggressive mode since more exchanges are done in a
secure channel to set up the IPSec session. However, the
Aggressive mode is faster. The default value in Vigor router is
Main mode.
IKE Proposals –To propose the local available authentication
schemes and encryption algorithms to the VPN peers, and get
its feedback to find a match. We suggest you select the
combination that covers the most schemes.
Phase1 / Phase2 –It is available if Custom for IKE Proposals
is selected above. Simply move your mouse on each item and
click on it. A pop up dialog will appear for you to modify the
value of Hash.
There are several options offered in default. If you click the “-”
button to remove one of them, a “+” button will appear to let