Configuring the advanced parameters, 2 configuring the advanced parameters – TP-Link Omada ER8411 VPN Router User Manual

Page 156

Advertising
background image

Configuring VPN

IPSec VPN Configuration

User Guide 147

Status

Choose to enable the IPSec policy.

3) Click

OK

.

2.1.2 Configuring the Advanced Parameters

Advanced settings include IKEv1/IKEv2 phase-1 settings and IKEv1/IKEv2 phase-2

settings. Phase-1 is used to authenticate both sides of the communication and establish

the IKE SA. Phase-2 is used to negotiate about keys and security related parameters, then

establish the IPSec SA. It is suggested to keep the default advanced settings. You can

complete the configurations according to your actual needs.

Configuring the IKE Phase-1 Parameters

Choose the menu

VPN > IPSec > IPSec Policy

and click

Advanced Settings

to load the

following page.

Figure 2-2 

Configuring the IKE Phase-1 Parameters

In the

Phase-1 Settings

section, configure the IKE phase-1 parameters and click

OK

.

Proposal

Select the proposal for IKE negotiation phase 1 to specify the encryption algorithm,

authentication algorithm and DH group. Up to four proposals can be selected.

Advertising