HP StorageWorks Enterprise File Services WAN Accelerator User Manual

Page 65

Advertising
background image

HP S

TORAGE

W

ORKS

EFS WAN A

CCELERATOR

M

ANAGEMENT

C

ONSOLE

U

SER

G

UIDE

65

2 -
C

ON
FIG

URING

TH
E

HP

EF

S

WA

N

A

C

C

EL
ER
ATO

R

6. Click Enable Perfect Forward Secrecy if you want to provide additional security

by renegotiating keys at specified intervals. Perfect Forward Secrecy provides
additional security by renegotiating keys at specified intervals. With Perfect
Forward Secrecy, if one key is compromised, previous and subsequent keys are
secure because they are not derived from previous keys.

7. Under Encryption Policy, select DES or NULL from the Method One drop-down

list.

8. Optionally, select DES, NULL, or None from the Method Two drop-down list.

9. Under Authentication Policy, select MD5 or SHA-1 from the Method One drop-

down list.

10. Optionally, select MD5, SHA-1, or None from the Method Two drop-down list.

11. Type the number of minutes between key renegotiations in the Time Between Key

Renegotiations text box. The default value is 240.

12. Type the shared secret in the Enter the Shared Secret text box. Retype the shared

secret in the Confirm the Shared Secret text box. All the HP EFS WAN
Accelerators in a network for which you want to use IPsec must have the same
shared secret.

13. Click Update Settings to apply your settings to the running configuration.

14. Click Save to write your settings to memory or click Reset to return the settings to

their previous values.

NOTE: If a connection has not been made between the two HP EFS WAN Accelerators that are
configured to use IPsec security, then the Peers list does not display the peer HP EFS WAN
Accelerator because a security association has not been established.

Advertising