
Field Description
DH Group The Diffie-Hellman group defines the parameter set used as the
basis for the key calculation during phase 1. "MODP" as sup-
ported by bintec devices stands for "modular exponentiation".
Possible values:
• BE ("C: During the Diffie-Hellman key calculation,
modular exponentiation at 768 bits is used to create the en-
cryption material.
• B& ("C: During the Diffie-Hellman key calculation,
modular exponentiation at 1024 bits is used to create the en-
cryption material.
• B' ("C: During the Diffie-Hellman key calculation,
modular exponentiation at 1536 bits is used to create the en-
cryption material.
Lifetime Create a lifetime for phase 1 keys.
As for RFC 2407, the default value is eight hours, which means
the key must be renewed once eight hours have elapsed.
The following options are available for defining the lifetime:
Entry in Seconds: Enter the lifetime for phase 1 key in seconds.
The value can be a whole number from 0 to 2147483647. The
default value is &&.
Entry in KBytes: Enter the lifetime for phase 1 keys as amount
of data processed in kBytes. The value can be a whole number
from 0 to 2147483647. The default value is .
The standard value as per RFC is used seconds and
Kbytes are entered.
Authentication Method Select the authentication method.
Possible values:
• 1 - (default value): If you do not use certific-
ates for the authentication, you can select Preshared Keys.
These are configured during peer configuration in the IPSec
Peers menu. The preshared key is the shared password.
• 9 $": Phase 1 key calculations are authenticated
using the DSA algorithm.
Funkwerk Enterprise Communications GmbH
16 VPN
bintec WLAN and Industrial WLAN 277
Comentarios a estos manuales