Specifications

Configuring Access Point Security
6-31
ESP Encryption
Algorithm
Select the encryption and authentication algorithms for the VPN
tunnel using the drop-down menu.
AES 128-bit - Uses the Advanced Encryption Standard
algorithm with 128-bit (32-character hexadecimal) keys.
AES 192-bit - Uses the Advanced Encryption Standard
algorithm with 192-bit (48-character hexadecimal) keys.
AES 256-bit - Uses the Advanced Encryption Standard
algorithm with 256-bit (64-character hexadecimal) keys.
Inbound ESP
Encryption Key
Enter a key for inbound traffic. The length of the key is determined
by the selected encryption algorithm. The key must match the
outbound key at the remote gateway.
Outbound ESP
Encryption Key
Define a key for outbound traffic. The length of the key is
determined by the selected encryption algorithm. The key must
match the inbound key at the remote gateway.
ESP Authentication
Algorithm
This option is available only when ESP with Authentication was
selected for the ESP type. Options include:
SHA1 - Enables Secure Hash Algorithm 1, which requires
160-bit (40-character hexadecimal) keys.
Inbound ESP
Authentication Key
Define a key for computing the integrity check on the inbound
traffic with the selected authentication algorithm. The key must be
32/40 hexadecimal (0-9, A-F) characters in length. The key must
match the corresponding outbound key on the remote security
gateway.
Outbound ESP
Authentication Key
Enter a key for computing the integrity check on outbound traffic
with the selected authentication algorithm. The key must be 32/40
hexadecimal (0-9, A-F) characters in length. The key must match
the corresponding inbound key on the remote security gateway.
Inbound SPI (Hex) Define an (up to) six-character (maximum) hexadecimal value to
identify the inbound security association created by the encryption
algorithm. The value must match the corresponding outbound SPI
value configured on the remote security gateway.
Outbound SPI (Hex) Enter an (up to) six-character (maximum) hexadecimal value to
identify the outbound security association created by the
encryption algorithm. The value must match the corresponding
inbound SPI value configured on the remote security gateway.