Linksys WRVS4400N Network Router User Manual


 
61
Chapter 6: Setting Up and Configuring the Router
VPN Tab
Wireless-N Gigabit Security Router with VPN
Advanced Settings button. If the Key Exchange Method is Auto (IKE), this button provides access to some
additional settings relating to IKE. Use this if the Router is unable to establish a VPN tunnel to the remote VPN
Gateway; ensure the Advanced Settings match those on the remote VPN Gateway. Note that Phase 1 is used for
key negotiation and Phase 2 is used for actual data exchange.
Advanced Settings (Phase 1 and Phase 2)
Operation Mode. Select the method to match the remote VPN endpoint.
Main: Main Mode is slower but more secure.
Aggressive: Aggressive mode is faster but less secure.
Local Identity. Select the desired option to match the “Remote Identity” setting at the other end of this
tunnel.
Local IP address: Your WAN IP Address.
Name: Your domain name.
Remote Identity. Select the desired option to match the “Local Identity” setting at the other end of this
tunnel.
Local IP address: WAN IP Address of the remote VPN endpoint.
Name: Domain name of the remote VPN endpoint.
Encryption. Encryption Algorithm used for the IKE SA. This setting must match the setting used at the other
end of this tunnel.
Authentication. Authentication Algorithm used for the IKE SA. This setting must match the setting used at the
other end of this tunnel.
MD5: A one way hashing algorithm that produces a 128-bit digest.
SHA1: A one way hashing algorithm that produces a 160-bit digest.
Group. The Group setting determines the bit size used in the IKE exchange. This value must match the value
used at the other end of this tunnel.
Key Life Time. This determines the time interval before the IKE SA (Security Association) expires. (It will
automatically be re-established if necessary.) While using a short time period increases security, it also
Figure 6-44: IPsec VPN Advanced Settings