User`s manual

Multi-WAN VPN QoS Router
145
IPSec Setup
If there is any encryption mechanism, the encryption mechanism of these two VPN channel
settings must be identical in order to establish connection. And the transmission data must be
encrypted with IPSec key, which is also known as the encryption "key". The device provides the
following two types of encryption management modes: Manual and IKE automatic encryption
mode- IKE with Preshared Key (automatic). If the Group VPN is selected or the dynamic IP
address of the Remote Security Gateway Type is applied, Aggressive Mode will be enabled
automatically without the option of Manual mode.
Encryption Management Protocol:
Perfect Forward Secrecy: When users check the PFS option, make sure to activate
the PFS feature of the VPN device and that VPN Client as well.
Phase 1/Phase 2 DH Group: This option allows users to select Diffie-Hellman