Multi-Tech Systems RF660 User Manual

Page 107

Advertising
background image

Chapter 6 – RouteFinder Software

Multi-Tech Systems, Inc. RouteFinderVPN RF760/660/600VPN User Guide (PN S000323D)

107

VPN > IPSec > Add IKE Connection

Add an IKE Connection

The IKE protocol automatically negotiates protocols and encryption algorithms; it keys automatic exchange of keys.

Add IKE Connection

Connection Name

Enter a text name that will identify the connection for you.

Compression

Check the compression checkbox to enable IPCOMP, the compression algorithm.

Perfect Forward Secrecy (PFS)

Check the PFS checkbox to enable PFS, a concept in which the newly generated keys are unrelated to the
older keys). This is enabled by default.

Authentication Method

Check an authentication method, either Secret or RSA signatures.

Secret

If the authentication method is Secret, this field must be configured. The Secret must be agreed upon and
shared by the VPN endpoints; it must be configured at both endpoints of the tunnel.

Select Encryption

Select the encryption method. 3DES is recommended.

IKE Life Time

The duration for which the ISAKMP SA should last is from successful negotiation to expiration. The default
value is 3600 seconds and the maximum is 28800 seconds.

Key Life

The duration for which the IPSec SA should last is from successful negotiation to expiration. The default
value is 28800 seconds and the maximum is 86400 seconds.

Number of Retries

Specify the number of retries for the IPSec tunnel. Enter zero for unlimited retries.

Advertising
This manual is related to the following products: