Motorola AP-51XX User Manual

Page 261

Advertising
background image

Configuring Access Point Security

6-43

ESP Encryption
Algorithm

Select the encryption and authentication algorithms for the VPN
tunnel using the drop-down menu.

DES - Uses the DES encryption algorithm requiring 64-bit
(16-character hexadecimal) keys.

3DES - Uses the 3DES encryption algorithm requiring 192-bit
(48-character hexadecimal) keys.

AES 128-bit: - Uses the Advanced Encryption Standard
algorithm with 128-bit (32-character hexadecimal) keys.

AES 192-bit: - Uses the Advanced Encryption Standard
algorithm with 192-bit (48-character hexadecimal) keys.

AES 256-bit: - Uses the Advanced Encryption Standard
algorithm with 256-bit (64-character hexadecimal) keys.

Inbound ESP
Encryption Key

Enter a key for inbound traffic. The length of the key is determined
by the selected encryption algorithm. The key must match the
outbound key at the remote gateway.

Outbound ESP
Encryption Key

Define a key for outbound traffic. The length of the key is
determined by the selected encryption algorithm. The key must
match the inbound key at the remote gateway.

ESP Authentication
Algorithm

Select the authentication algorithm to use with ESP. This option is
available only when

ESP with Authentication

was selected for

the ESP type. Options include:

MD5 - Enables the Message Digest 5 algorithm, which
requires 128-bit (32-character hexadecimal) keys.

SHA1 - Enables Secure Hash Algorithm 1, which requires
160-bit (40-character hexadecimal) keys.

Inbound ESP
Authentication Key

Define a key for computing the integrity check on the inbound
traffic with the selected authentication algorithm. The key must be
32/40 (for MD5/SHA1) hexadecimal (0-9, A-F) characters in length.
The key must match the corresponding outbound key on the remote
security gateway.

Outbound ESP
Authentication Key

Enter a key for computing the integrity check on outbound traffic
with the selected authentication algorithm. The key must be 32/40
(for MD5/SHA1) hexadecimal (0-9, A-F) characters in length. The
key must match the corresponding inbound key on the remote
security gateway.

Advertising