Netgear DGND3300 User Manual Page 79

  • Download
  • Add to my manuals
  • Print
  • Page
    / 177
  • Table of contents
  • TROUBLESHOOTING
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 78
Chapter 6. Virtual Private Networking | 79
N300 Wireless Dual Band ADSL2+ Modem Router DGND3300v2 User Manual
- The typical automated Internet Key Exchange (IKE) setup (see Using Auto Policy to
Configure VPN Tunnels on page 101)
- A manual keying setup in which you must specify each phase of the connection (see
Using Manual Policy to Configure VPN Tunnels on page 109)
What level of IPSec VPN encryption will you use?
- DES. The Data Encryption Standard (DES) processes input data that is 64 bits wide,
encrypting these values using a 56-bit key. Faster but less secure than 3DES.
- 3DES. Triple DES achieves a higher level of security by encrypting the data three
times using DES with three different, unrelated keys.
What level of authentication will you use?
- MDS. 128 bits, faster but less secure.
- SHA-1. 160 bits, slower but more secure.
VPN Tunnel Configuration
There are two tunnel configurations and three ways to configure them:
Use the VPN Wizard to configure a VPN tunnel (recommended for most situations):
- See Setting Up a Client-to-Gateway VPN Configuration on page 80.
- See Setting Up a Gateway-to-Gateway VPN Configuration on page 90.
See Using Auto Policy to Configure VPN Tunnels on page 101 when the VPN Wizard and
its VPNC defaults (see Table 2 on page 79) are not appropriate for your special
circumstances, but you want to automate the Internet Key Exchange (IKE) setup.
See Using Manual Policy to Configure VPN Tunnels on page 109 when the VPN Wizard
and its VPNC defaults (see Table 2 on page 79) are not appropriate for your special
circumstances and you must specify each phase of the connection. You manually enter
all the authentication and key parameters. You have more control over the process;
however, the process is more complex, and there are more opportunities for errors or
Table 2. Parameters Recommended by the VPNC and Used in the VPN Wizard
Parameter Factory Default Setting
Secure Association Main Mode
Authentication Method Pre-Shared Key
Encryption Method 3DES
Authentication Protocol SHA-1
Diffie-Hellman (DH) Group Group 2 (1024 bit)
Key Life 8 hours
IKE Life Time 1 hour
Page view 78
1 2 ... 74 75 76 77 78 79 80 81 82 83 84 ... 176 177

Comments to this Manuals

No comments