Draytek vigor3900 User Manual page 282

Multi-wan security appliance
Hide thumbs Also See for vigor3900:
Table of Contents

Advertisement

Local IP/Subnet
Mask
Local Next Hop
Remote Host
Remote IP / Subnet
Mask
More Remote
Subnet
Auth Type
Certificate
Preshared Key
Security Protocol
DPD Delay
DPD Timeout
Type the IP address and subnet mask of local host.
Specify the gateway for WAN interface. Usually, use the
default setting (leave it in blank).
Type the WAN IP address for the remote host.
Type the LAN IP address and LAN subnet mask for the
remote host.
Add more remote subnet in this field if required.
The authentication to be used by Pre-Shared Key or RSA
Signature. Choose PSK or RSA for such profile.
Choose a local certificate from the drop down list if RSA is
selected as Auth Type.
Type a pre-shared key for authentication if PSK is selected
as Auth Type.
Choose ESP to specify the IPSec protocol for the
Encapsulating Security Payload protocol. The data will be
encrypted and authenticated. Choose AH to specify the
IPSec protocol for the Authentication Header protocol. The
data will be authenticated but not be encrypted.
DPD means dead peer detection. It is a keep-alive timer. A
Hello message will be emitted periodically when a tunnel is
idle. Use the value 0 to disable this function. The
recommended value is 30 seconds if enabled.
It is the timeout timer. The peer will be declared dead once
no acknowledge message is received after timeout value.
Use the value 0 to disable this function. The recommended
value is 120 seconds if enabled.
274
Vigor3900 Series User's Guide

Advertisement

Table of Contents
loading

Table of Contents