beautypg.com

Configuring ike key settings – Brocade Mobility 7131 Access Point Product Reference Guide (Supporting software release 4.4.0.0 and later) User Manual

Page 238

background image

226

Brocade Mobility 7131 Access Point Product Reference Guide

53-1002517-01

6

4. Click Ok to return to the VPN screen. Click Apply to retain the settings made on the Auto Key

Settings screen.

5. Click Cancel to return to the VPN screen without retaining the changes made to this screen.

Configuring IKE Key Settings

The Internet Key Exchange (IKE) is an IPsec standard protocol used to ensure security for VPN
negotiation and remote host or network access. IKE provides an automatic means of negotiation
and authentication for communication between two or more parties. In essence, IKE manages
IPSec keys automatically for the parties.

To configure IKE key settings for the Mobility 7131 Access Point:

1. Select Network Configuration -> WAN -> VPN from the Mobility 7131 Access Point menu tree.

2. Refer to the VPN Tunnel Config field, select the Auto (IKE) Key Exchange radio button and click

the IKE Settings button.

ESP Type

ESP provides packet encryption, optional data authentication and anti-replay services for
the VPN tunnel. Use the drop-down menu to select the ESP type.

None - Disables ESP. The rest of the fields are not active.

ESP - Enables ESP for this tunnel.

ESP with Authentication - Enables ESP with authentication.

ESP Encryption
Algorithm

Use this menu to select the encryption and authentication algorithms for this VPN tunnel.

DES - Selects the DES algorithm.No keys are required to be manually
provided.

3DES - Selects the 3DES algorithm. No keys are required to be manually
provided.

AES 128-bit - Selects the Advanced Encryption Standard algorithm with
128-bit. No keys are required to be manually provided.

AES 192-bit - Selects the Advanced Encryption Standard algorithm with
192-bit. No keys are required to be manually provided.

AES 256-bit - Selects the Advanced Encryption Standard algorithm with
256-bit. No keys are required to be manually provided.

ESP Authentication
Algorithm

Use this menu to select the authentication algorithm to be used with ESP. This menu is
only active when ESP with Authentication was selected for the ESP type.

MD5 - Enables the Message Digest 5 algorithm requiring 128-bit. No
keys are required to be manually provided.

SHA1 - Enables Secure Hash Algorithm. No keys are required to be
manually provided.