beautypg.com

Brocade Mobility Access Point System Reference Guide (Supporting software release 5.5.0.0 and later) User Manual

Page 173

background image

Brocade Mobility Access Point System Reference Guide

163

53-1003100-01

5

FIGURE 65

Profile Security - VPN Transform Set create/modify screen

18. Define the following settings for the new or modified Transform Set configuration:

19. Select OK to save the changes made within the Transform Set screen. Select Reset to revert to

the last saved configuration.

20. Select the Crypto Map tab.

Use crypto maps (as applied to IPSec VPN) to combine the elements used to create IPSec SAs
(including transform sets).

Transform Set

If creating a new transform set, define a 32 character maximum name to differentiate this
configuration from others with similar attributes.

Authentication Algorithm

Set the transform sets’s authentication scheme used to validate identity credentials. Use the
drop-down menu to select either HMAC-SHA or HMAC-MD5. The default setting is HMAC-SHA.

Encryption Algorithm

Set the transform set encryption method for protecting transmitted traffic. Options include DES,
3DES, AES, AES-192 and AES-256. The default setting is AES-256.

Mode

Use the drop-down menu to select either Tunnel or Transport as the IPSec tunnel type used with
the transform set. Tunnel is used for site-to-site VPN and Transport should be used for remote
VPN deployments.