Configuring the advanced parameters, 2 configuring the advanced parameters – TP-Link Omada ER8411 VPN Router User Manual
Page 156

Configuring VPN
IPSec VPN Configuration
User Guide 147
Status
Choose to enable the IPSec policy.
3) Click
OK
.
2.1.2 Configuring the Advanced Parameters
Advanced settings include IKEv1/IKEv2 phase-1 settings and IKEv1/IKEv2 phase-2
settings. Phase-1 is used to authenticate both sides of the communication and establish
the IKE SA. Phase-2 is used to negotiate about keys and security related parameters, then
establish the IPSec SA. It is suggested to keep the default advanced settings. You can
complete the configurations according to your actual needs.
■
Configuring the IKE Phase-1 Parameters
Choose the menu
VPN > IPSec > IPSec Policy
and click
Advanced Settings
to load the
following page.
Figure 2-2
Configuring the IKE Phase-1 Parameters
In the
Phase-1 Settings
section, configure the IKE phase-1 parameters and click
OK
.
Proposal
Select the proposal for IKE negotiation phase 1 to specify the encryption algorithm,
authentication algorithm and DH group. Up to four proposals can be selected.