beautypg.com

B&B Electronics RT3G-300_310_320_330_340-W - Configuration Manual User Manual

Page 41

background image

B&B Electronics, Inc.

SPECTRE Configuration Manual

41

SPECTRE_Configuration_Manual_2912m

www.bb-elec.com

www.bb-europe.com

1.15. IPSec tunnel configuration

Select the IPsec item in the menu to configure an IPsec tunnel. IPsec is a protocol

which is used to create a secure connection between two LANs. Up to 4 IPsec tunnels may
be created.

Item

Description

Create

This item enables the individual tunnels.

Description

This item displays the name of the tunnel specified in the configuration
of the tunnel.

Edit

Select to configure an IPsec tunnel.

Table 29: Overview IPsec tunnels

Fig. 32: IPsec tunnels configuration

Item

Description

Description

Description of tunnel.

Remote IP
Address

IP address or domain name of the remote host.

Remote ID

Identification of remote host. The ID contains two parts: a hostname
and a domain-name.

Remote Subnet

Remote Subnet address

Remote Subnet
Mask

Remote Subnet mask

Local ID

Identification of local host. The ID contains two parts: a hostname and
a domain-name.

Local Subnet

Local subnet address

Local subnet mask Local subnet mask
Key Lifetime

Lifetime key data part of tunnel. The minimum value of this parameter
is 60s. The maximum value is 86400 s.

IKE Lifetime

Lifetime key service part of tunnel. The minimum value of this
parameter is 60s. The maximum value is 86400 s.

Rekey Margin

Specifies the amount of time before the connection will be re-
established. The maximum value must be less than half of the
parameters IKE and Key Lifetime.

Rekey Fuzz

Specifies the maximum percentage by which the Rekey Margin should
be randomly increased to randomize re-keying intervals

DPD Delay

Defines time after which IPsec tunnel verification occurs

DPD Timeout

Defines the timeout (in seconds) for a DPD response.

NAT traversal

If address translation between two end points of the IPsec tunnel is
used, it needs to allow NAT Traversal

Aggressive mode

If this parameter is enabled, the IPsec tunnel will be connected faster,