About ipsec tunnels, About ipsec tunnels -7 – Netopia 3300 User Manual

Page 139

Advertising
background image

Virtual Private Networks (VPNs) 5-7

The IP Profile Parameters screen appears.

Enter the Remote IP Address and Remote IP Mask for the host to which you want to tunnel.

About IPsec Tunnels

IPsec stands for IP Security, a set of protocols that suppor ts secure exchange of IP packets at the IP layer.
IPsec is deployed widely to implement Vir tual Private Networks (VPNs). See

"Over view" on page 5-1

for more

information.

IPsec suppor ts two encr yption modes: Transpor t and Tunnel. Transpor t mode encr ypts only the data por tion
(payload) of each packet, but leaves the header untouched. The more secure Tunnel mode encr ypts both the
header and the payload. On the receiving side, an IPsec-compliant device decr ypts each packet. Netopia
Routers suppor t the more secure Tunnel mode.

Netopia Firmware Version 8.7 offers IPsec 3DES encr yption over the VPN tunnel. DES stands for Data
Encr yption Standard, a popular symmetric-key encr yption method. DES uses a 56-bit key. Netopia Routers offer
IPsec 3DES (triple DES) encr yption as a standard option. Some models suppor t built-in hardware acceleration
of 3DES encr yption at line speeds.

Internet Key Exchange (IKE) is an authentication and encr yption key management protocol used in conjunction
with the IPsec standard. IPsec key management offers a wide variety of options which are explained in

Chapter 6, “Internet Key Exchange (IKE) IPsec Key Management for VPNs.”

IP Profile Parameters

Address Translation Enabled: Yes

NAT Map List... Easy-PAT
NAT Server List... Easy-Servers

Local WAN IP Address: 0.0.0.0

Remote IP Address: 173.167.8.10
Remote IP Mask: 255.255.0.0

Filter Set...
Remove Filter Set

RIP Profile Options...

Advertising