Setup guide

Mega 200VWR Router
Chapter 4: Configuration
92
~ AES: Stands for Advanced Encryption Standards, you can use 128, 192 or 256 bits as
encryption method.
Diffie-Hellman Group: It is a public-key cryptography protocol that allows two parties to establish a
shared secret over an unsecured communication channel (i.e. over the Internet). There are three modes,
MODP 768-bit, MODP 1024-bit and MODP 1536-bit. MODP stands for Modular Exponentiation Groups.
Local ID:
~ Type: Specify local ID type.
~ Content: Input ID’s information, like domain name www.ipsectest.com
.
Remote ID:
~ Type: Specify Remote ID type.
~ Identifier: Input remote ID’s information, like domain name www.ipsectest.com
.
SA Lifetime: Specify the number of minutes that a Security Association (SA) will stay active before new
encryption and authentication key will be exchanged. There are two kinds of SAs, IKE and IPSec. IKE
negotiates and establishes SA on behalf of IPSec, an IKE SA is used by IKE.
~ Phase 1 (IKE): Used to issue an initial connection request for a new VPN tunnel. Any value
can be selected between 5 and 15,000 minutes. The default is 480 minutes.
~ Phase 2 (IPSec): Used to negotiate and establish secure authentication. Any value can be
selected between 5 and 15,000 minutes. The default is 60 minutes.
A short SA time increases security by forcing the two parties to update the keys. However, every
time the VPN tunnel re-negotiates, access through the tunnel will be temporarily disconnected.
Ping to Keep Alive:
PING to the IP: The router is able to IP Ping the remote PC with a specified IP address and alert the user
when the connection fails. Once the alert message is received, the router will drop this tunnel
connection. The connection will need to be re-established. Default setting is 0.0.0.0 which disables this
function.
Interval: This sets the time interval between Pings to the IP function to monitor the connection status.
Default interval setting is 10 seconds. Time interval can be set to any value between 0 and 3600
seconds, 0 second disables this function.
Ping to the IP Interval (sec) Ping to the IP Action
0.0.0.0 0 No
0.0.0.0 2000 No
xxx.xxx.xxx.xxx (Any valid IP Address) 0 No
xxx.xxx.xxx.xxx(Any valid IP Address) 2000 Yes, activate it in every 2000
second.
Disconnection Time after no traffic: This is the “NO Response” timer. When no traffic is received for
more than the Disconnection time setting, the router will automatically halt the tunnel connection and
re-establish it base after the Reconnection Time has elapsed. 180 seconds is minimum time interval for
this function.
Reconnection Time: This is the reconnecting time interval after the NO TRAFFIC timeout has occurred.
3 minutes is minimum time interval for this function.
Select the Apply button to update the settings.