User manual
USER MANUAL PrestoAdvancedAD101_AD301_UG_000_UK
Descriptions and non-contractual illustrations in this document are given as an indication only.
M2M Design reserves the right to make any modification
35
Packet size
Specify packet size for ping message
Advanced Ping Interval
Time interval between advanced ping packets.
Advanced Ping Wait
For A Response
Advanced ping proofing timeout.
Maximum numbers of
failed packets
Set percentage of failed packets until failover action is performed.
Negotiation Mode
This option enables selection from three IPSec modes: Main, Aggressive and
Base. If option NAT Traversal is selected Aggressive mode is predefined.
Compress (IP Payload
Compression Protocol
(IP Comp))
IP Payload Compression is a protocol that reduces the size of IP datagram. Select
this option if you want the Router to propose compression when it initiates a
connection.
Dead Peer Detection
(DPD)
When DPD is enabled, the Router will send periodic HELLO/ACK messages to
check the status of the IPSec tunnel (this feature can be used only when both peers
or IPSec devices of the IPSec tunnel use the DPD mechanism). Once a dead peer
has been detected, the Router will disconnect the tunnel so the connection can be
re-established. Specify the interval between HELLO/ACK messages (how often
you want the messages to be sent). The default interval is 20 seconds.
NAT Traversal
Both the IPSec initiator and responder must support the mechanism for detecting
the NAT router in the path and changing to a new port, as defined in RFC 3947.
NOTE: If you select this mode the Aggressive mode will be automatically selected because
it is obligatory option for NAT-T to work properly.
NOTE: Keep-alive for NAT-T function is enabled by default and cannot be disabled. The
default interval for keep-alive packets is 20 seconds.
Send initial contact
The initial-contact status message may be used when one side wishes to inform
the other that this is the first SA being established with the remote system. The
receiver of this Notification Message might then elect to delete any existing SA's it
has for the sending system under the assumption that the sending system has
rebooted and no longer has access to the original SA's and their associated keying
material.
Back
Click Back to return on IPSec Summary screen.
Reload
Click Reload to discard any changes and reload previous settings.
Save
Click Save to save your changes back to the PRESTO Advanced Router. After that
router automatically goes back and begin negotiations of the tunnels by clicking
on the Start button.
Table 11 - IPSec Parameters