User Manual

Table Of Contents
Table 4. Phase 2 settings (Continued)
OptionsSetting
For IKE1, you can enable Perfect Forward Secrecy (PFS) and select a Diffie-Hellman
(DH) group algorithm. For IKE2, you cannot enable PFS.
PFS
no (= DH is disabled, default)
dh1, dh2, dh5, dh14, dh15, dh16, dh17, dh18, dh19, dh20, dh21, dh22, dh23, or dh24
Note: The higher the DH group, the more secure the exchange.
The period in seconds for which the IKE security association (SA) is valid. When the
period times out, the next rekeying occurs. The default is 28800 seconds (8 hours).
The period can be between 600 and 604800 seconds.
SA Lifetime
9. Click the Apply button.
Your settings are saved.
Note: If you changed the Phase 1 and Phase 2 settings, make sure that you change
them accordingly on the remote VPN router.
Note: Additional encryption algorithms are available to Insight subscribers through
the Insight Cloud Portal.
Enable or disable an IPSec VPN tunnel
You can enable or disable an IPSec VPN tunnel.
To enable or disable an IPSec VPN tunnel on the router:
1.
Launch a web browser from a computer or mobile device that is connected to the
router network.
2.
Enter https://www.routerlogin.net.
Your browser might display a security message, which you can ignore. For more
information, see Log in to the local browser interface on page 16.
A login window opens.
3. Enter the router user name and password.
The user name is admin. The password is the one that you specified when you set
up your router. If you didn’t change the password, enter password. The user name
and password are case-sensitive.
User Manual130Set Up VPN Connections
Insight Managed Business Router BR200