HP StorageWorks Enterprise File Services WAN Accelerator User Manual
Page 65

HP S
TORAGE
W
ORKS
EFS WAN A
CCELERATOR
M
ANAGEMENT
C
ONSOLE
U
SER
G
UIDE
65
2 -
C
ON
FIG
URING
TH
E
HP
EF
S
WA
N
A
C
C
EL
ER
ATO
R
6. Click Enable Perfect Forward Secrecy if you want to provide additional security
by renegotiating keys at specified intervals. Perfect Forward Secrecy provides
additional security by renegotiating keys at specified intervals. With Perfect
Forward Secrecy, if one key is compromised, previous and subsequent keys are
secure because they are not derived from previous keys.
7. Under Encryption Policy, select DES or NULL from the Method One drop-down
list.
8. Optionally, select DES, NULL, or None from the Method Two drop-down list.
9. Under Authentication Policy, select MD5 or SHA-1 from the Method One drop-
down list.
10. Optionally, select MD5, SHA-1, or None from the Method Two drop-down list.
11. Type the number of minutes between key renegotiations in the Time Between Key
Renegotiations text box. The default value is 240.
12. Type the shared secret in the Enter the Shared Secret text box. Retype the shared
secret in the Confirm the Shared Secret text box. All the HP EFS WAN
Accelerators in a network for which you want to use IPsec must have the same
shared secret.
13. Click Update Settings to apply your settings to the running configuration.
14. Click Save to write your settings to memory or click Reset to return the settings to
their previous values.
NOTE: If a connection has not been made between the two HP EFS WAN Accelerators that are
configured to use IPsec security, then the Peers list does not display the peer HP EFS WAN
Accelerator because a security association has not been established.