Lancom Systems LCOS 3.50 Server User Manual


 
LANCOM Reference Manual LCOS 3.50 ̈ Chapter 14: Virtual Private Networks—VPN
298
Virtual Private Networks—
VPN
DES, key length 56 bit
̈ IKE key exchange with Preshared Keys
̈ Key exchange via Oakley, Diffie-Hellman algorithm with key lengths 768
bit, 1024 bit or 1536 bit, well-known groups 1, 2 and 5
̈ Key management in accordance with ISAKMP
̈ Apart from conventional IPSec implementations, LANCOM devices offer
extended functionality, such as the LANCOM Dynamic VPN that allows the
use of the high-security IKE Main Mode even with dynamic IP addresses.
̈ In combination with the LANCOM Advanced VPN Client, a separate pre-
shared key can be used for each connection even when using IKE
Aggressive Mode connections.
14.3 VPN connections in detail
Two types of VPN connections are available:
̈ VPN connections linking two local networks. This type of connection is
also known as a "LAN-LAN coupling".
̈ The connection of an individual computer with a network, generally via a
dial-in connection (Remote Access Service – RAS).
14.3.1 LAN-LAN coupling
The coupling of two remote networks is known as a LAN-LAN coupling. With
such a connection, the devices in one LAN can access those of the remote LAN
(assuming they have the necessary access rights).