Download OpenRG Administrator Manual - Version 5.3

Transcript
Services
Engineering Task Force (IETF), IPSec and IKE together standardize the way data protection
is performed, thus making it possible for security systems developed by different vendors to
interoperate.
5.8.1.1 Technical Specifications
• Security architecture for the Internet Protocol
• IP Security Document Roadmap
• Connection type: Tunnel, Transport
• Use of Internet Security Association and Key Management Protocol (ISAKMP) in main and
aggressive modes
• Key management: Manual, Automatic (Internet Key Exchange)
• NAT Traversal Negotiation for resolution of NATed tunnel endpoint scenarios
• Dead Peer Detection for tunnel disconnection in case the remote endpoint ceases to operate
• Gateway authentication: X.509, RSA signatures and pre-shared secret key
• IP protocols: ESP, AH
• Encryption: AES, 3DES, DES, NULL, HW encryption integration (platform dependent)
• Authentication: MD5, SHA-1
• IP Payload compression
• Interoperability: VPNC Certified IPSec, Windows 2000, Windows NT, FreeS/WAN,
FreeBSD, Checkpoint Firewall-1, Safenet SoftRemote, NetScreen, SSH Sentinel
5.8.1.2 IPSec Settings
Access this feature either from the 'VPN' menu item under the 'Services' tab, or by clicking its
icon in the 'Advanced' screen. The 'Internet Protocol Security (IPSec)' screen appears.
© 1998-2010 Jungo Software Technologies Ltd.
197