User's Manual

Configuring Virtual Private Networks (VPNs) and Security
Configuring VPNs
Cisco RV 120W Administration Guide 110
5
-
Subnet
—Allows an entire subnet to connect to the VPN. Enter the
network address in the Start IP Address field, and enter the Subnet
Mask in the Subnet Mask field.
STEP 2 In the S
Start Address
field, enter the first IP address in the range. If you selected
Single, enter the single IP address in this field and leave the E
End IP Address
field
blank.
STEP 3 In the E
End Address
field, enter the last IP address in the range.
STEP 4 If you chose Subnet as the type, enter the Subnet Mask of the network.
Manual Policy Parameters
The Manual Policy creates an SA (Security Association) based on the following
static inputs:
SPI-Incoming, SPI-Outgoing—Enter a hexadecimal value between 3 and 8
characters; for example, 0x1234,
Encryption Algorithm—Select the algorithm used to encrypt the data.
Key-In—Enter the encryption key of the inbound policy. The length of the
key depends on the algorithm chosen:
- DES—8 characters
- 3DES—24 characters
- AES-128—16 characters
- AES-192—24 characters
- AES-256—32 characters
- AES-CCM—16 characters
- AES-GCM—20 characters
Key-Out—Enter the encryption key of the outbound policy. The length of the
key depends on the algorithm chosen, as shown above.
Integrity Algorithm—Select the algorithm used to verify the integrity of the
data.
Key-In—Enter the integrity key (for ESP with Integrity-mode) for the inbound
policy. The length of the key depends on the algorithm chosen:
- MD5—16 characters