User's Manual

XQVHFXUHGFRPPXQLFDWLRQFKDQQHOLHRYHUWKH,QWHUQHW7KHUHDUHWKUHHPRGHV02'3ELW
02'3ELWDQG02'3ELW02'3VWDQGVIRU0RGXODU([SRQHQWLDWLRQ*URXSV
SA Lifetime: Specify the number of minutes that a Security Association (SA) will stay active
EHIRUHQHZHQFU\SWLRQDQGDXWKHQWLFDWLRQNH\ZLOOEHH[FKDQJHG7KHUHDUHWZRNLQGVRI6$V,.(
DQG,36HF,.(QHJRWLDWHVDQGHVWDEOLVKHV6$RQEHKDOIRI,36HFDQ,.(6$LVXVHGE\,.(
Phase 1 (IKE):7RLVVXHDQLQLWLDOFRQQHFWLRQUHTXHVWIRUDQHZ931WXQQHO7KHUDQJHFDQ
be from 5 to 15,000 minutes, and the default is 480 minutes.
Phase 2 (IPSec): To negotiate and establish secure authentication. The range can be from 5
to 15,000 minutes, and the default is 60 minutes.
A short SA time increases security by forcing the two parties to update the keys. However, every
time the VPN tunnel re-negotiates, access through the tunnel will be temporarily disconnected.
PING for Keep Alive:
None: The default setting is None. To this mode, it will not detect the remote IPSec peer has
EHHQORVWRUQRW,WRQO\IROORZVWKHSROLF\RI'LVFRQQHFWLRQWLPHDIWHUQRWUDI¿FZKLFKWKHUH-
mote IPSec will be disconnected afther the time you set in this function.
PING: This mode will detect the remote IPSec peer has lost or not by pinging specify IP ad-
dress.
DPD: Dead peer detection (DPD) is a keeping alive mechanism that enables the router to be
detected lively when the connection between the router and a remote IPSec peer has lost.
Please be noted, it must be enabled on the both sites.
PING to the IP:,WLVDEOHWR,33LQJWKHUHPRWH3&ZLWKWKHVSHFL¿HG,3DGGUHVVDQGDOHUWZKHQ
the connection fails. Once alter message is received, Router will drop this tunnel connection.
5HHVWDEOLVKRIWKLVFRQQHFWLRQLVUHTXLUHG'HIDXOWVHWWLQJLVZKLFKGLVDEOHVWKHIXQFWLRQ
Interval: This sets the time interval between Pings to the IP function to monitor the connection
status. Default interval setting is 10 seconds. Time interval can be set from 0 to 3600 second, 0
second disables the function.
Ping to the IP Interval (sec) Ping to the IP Action
0.0.0.0 0 No
0.0.0.0 2000 No
xxx.xxx.xxx.xxx (A valid IP Address) 0 No
xxx.xxx.xxx.xxx(A valid IP Address) 2000 Yes, activate it in every 2000
second.
'LVFRQQHFWLRQ7LPHDIWHUQRWUDI¿F,WLVWKH125HVSRQVHWLPHFORFN:KHQQRWUDI¿FVWDJH
time is beyond the Disconnection time set, Router will automatically halt the tunnel connection and
re-establish it base on the Reconnection Time set. 180 seconds is minimum time interval for this
function.
Reconnection Time: It is the reconnecting time interval after NO TRAFFIC is initiated. 3 minutes
is minimum time interval for this function.
&OLFN(GLW'HOHWHWRVDYH\RXUFKDQJHV
98