User Guide

Table Of Contents
168
Step 6 Set required parameters, and click Save to apply your settings.
---- End
Parameter description
Parameter
Description
IPSec
It is used to enable or disable the IPSec function.
WAN
It specifies the local WAN port assigned to the IPSec function. The IP address of the WAN
port must be set as the value of Remote Gateway of the IPSec peer.
Encapsulation
Mode
The router supports two modes:
- Tunnel Mode: It is most commonly used between gateways.
- Transport Mode: It is mainly used for end-to-end communications.
Connection
Name
It specifies the name of the IPSec tunnel.
Exchange Mode
It specifies whether the device is an imitator that starts the VPN request, or a responder
that answers the request.
- Initiator mode: It specifies the device that starts the VPN attempt.
- Responder mode: It specifies the device that answers the Initiators request.
Encryption
Algorithm
It specifies the IKE session encryption algorithm.
- DES (Data Encryption Standard): A 56-bit key is used to encrypt 64-bit data. The last 8
bits of the 64-bit data are used for parity check.
- 3DES: Three 56-bit keys are used for encryption.
- AES (Advanced Encryption Standard): AES 128/192/256 indicates that 128/192/256-bit
keys are used for encryption respectively.
Integrity
Verification
The router supports the following algorithms to check key integrity:
- MD5 (Message Digest Algorithm): A 128-bit message digest is generated to prevent
message tampering.
- SHA1 (Secure Hash Algorithm): A 160-bit message digest is generated to prevent
message tampering, leading to higher security than MD5.
Pre-shared Key
This must be the same at both ends.