Cisco Systems RV130W Manual De Usuario

Descargar
Página de 141
Configuring VPN
Configuring Site-to-Site IPsec VPN Advanced Parameters
Cisco RV130/RV130W Wireless Multifunction VPN Router Administration Guide
102
6
 
c. In the Pre-Shared Key field, enter the key or password. Ensure that the 
password does not contain double-quotes (“).
d. In the Diffie-Hellman (DH) Group field, specify the DH Group algorithm used 
when exchanging a pre-shared key. The DH Group sets the strength of the 
algorithm in bits. Ensure that the DH Group is configured identically on both 
sides of the IKE policy. 
e. In the SA-Lifetime field, enter the interval, in seconds, after which the Security 
Association becomes invalid.
f.
To enable the Dead Peer Detection feature, check the Enable box. Dead Peer 
Detection (DPD) is used to detect if the peer is alive. If the peer is detected as 
dead, the device deletes the IPsec and IKE Security Association. If you enable 
this feature, also enter these settings:
-
DPD Delay—The interval, in seconds, between consecutive DPD R-U-
THERE messages. DPD R-U-THERE messages are sent only when the 
IPsec traffic is idle.
-
DPD Timeout—The maximum time that the device should wait to 
receive a response to the DPD message before considering the peer to 
be dead.
STEP  6
Click Save.
NOTE
If you have a VPN connection already configured, you cannot add another without 
deleting the existing VPN connection.
Managing VPN Policies
NOTE
Before you create an Auto VPN Policy, ensure that you create the IKE policy based 
on which you want to create the auto VPN policy.
To manage VPN policies:
STEP 1
Choose VPN > Site-to-Site IPsec VPN > Advanced VPN Setup. Click Add Row
STEP  2
In the Add / Edit VPN Policy Configuration section:
a. In the Policy Name field, enter a unique name to identify the policy. 
b. In the Policy Type field, choose one of the following options: