Multi-Tech Systems RF600 ユーザーズマニュアル

ページ / 189
Chapter 6 – RouteFinder Software  
Multi-Tech Systems, Inc. RouteFinderVPN RF760/660/600VPN User Guide (PN S000323D) 
107 
VPN > IPSec > Add IKE Connection 
Add an IKE Connection  
The IKE protocol automatically negotiates protocols and encryption algorithms; it keys automatic exchange of keys.  
 
Add IKE Connection 
Connection Name 
 
Enter a text name that will identify the connection for you.  
Compression 
Check the compression checkbox to enable IPCOMP, the compression algorithm.
 
Perfect Forward Secrecy (PFS) 
Check the PFS checkbox to enable PFS, a concept in which the newly generated keys are unrelated to the 
older keys). This is enabled by default. 
Authentication Method 
Check an authentication method, either Secret or RSA signatures. 
Secret 
If the authentication method is Secret, this field must be configured. The Secret must be agreed upon and 
shared by the VPN endpoints; it must be configured at both endpoints of the tunnel. 
Select Encryption 
Select the encryption method. 3DES is recommended. 
IKE Life Time 
The duration for which the ISAKMP SA should last is from successful negotiation to expiration. The default 
value is 3600 seconds and the maximum is 28800 seconds. 
Key Life 
The duration for which the IPSec SA should last is from successful negotiation to expiration. The default 
value is 28800 seconds and the maximum is 86400 seconds. 
Number of Retries 
Specify the number of retries for the IPSec tunnel. Enter zero for unlimited retries.