User guide
Chapter 6 – RouteFinder Software
Multi-Tech Systems, Inc. RouteFinder RF850/860 User Guide (PN S000400E) 120
VPN > IPSec > Manual
ESP Encryption Key (Espenckey) - The VPN firewall box uses 3DES as its encryption algorithm.
3DES uses a 192 bit hexadecimal number as its encryption key.
ESP Authentication Key (Espauthkey) - The VPN firewall could use either MD5 or SHA1 for ESP
authentication: MD5 - 128 bit key example: 0x0123456789012345678901234567890ab.
SHA1 - 160 bit key example: 0x01234567890123456789012345678901234567890
AH Key
The VPN firewall could use either MD5 or SHA1 for authentication
MD5 - 128 bit key example: 0x0123456789012345678901234567890ab.
SHA1 - 160 bit key example: 0x01234567890123456789012345678901234567890
Left NextHop
Next Hop is the address of the next device in a routing table’s path that moves a packet to it’s
destination. Enter 0.0.0.0 to indicate that the device should use the routing table default.
Local WAN IP
Select the Interface to initiate the IPSec tunnel (Left Security Gateway). Options are LAN, WAN,
and DMZ.
Local LAN
This is the local security gateway for which the security services are to be provided. If the
RouteFinder acts as a host, this should be configured as None.
Failover Required
Check the box to enable VPN failover for the tunnel. When this field is enabled, the tunnel will
"failover" onto the other interface if the local interface is down. For example, if the tunnel is
configured on WAN 1 but the link goes down, the tunnel again comes up on the other link (i.e., WAN
2). Failover is possible only when the remote gateway is an FQDN (Fully Qualified Domain Name).
Remote Gateway IP
This is the interface in which the IPSec tunnel ends. In the case of a Road Warrior with a Dynamic
IP address, this should be configured as ANY.
Remote LAN
This is the remote security gateway for which the security services are to be provided. If the remote
end is a host, this should be configured as None.
NetBIOS Broadcast
Check this option to enable broadcasts over the connection. It will allow computers on the network
to share Microsoft file and printer sharing information.