HP X Unified Security Platform Series Manual do Utilizador Página 219

  • Descarregar
  • Adicionar aos meus manuais
  • Imprimir
  • Página
    / 333
  • Índice
  • MARCADORES
  • Avaliado. / 5. Com base em avaliações de clientes
Vista de página 218
IKE Proposal
X Family LSM User’s Guide V 2.5.1 203
Lifetime Specify the length of time the security association remains valid before new
authentication and encryption keys must be exchanged (between 1 and 65535
seconds, default 28800). A lower value increases security, but may be
inconvenient, since the connection is temporary disabled.
Authentication
Type: Pre-
Shared Key
If selected, the device uses a shared password to authenticate access to the VPN
connection.
If you select this option and use the Aggressive Mode option, you need to specify
a Local ID Type and Peer ID Type.
Authentication
Type: X.509
Certificates
If X.509 Certificates is selected as the Authentication Type, select the Local
Certificate to be used for authentication from the drop-down list. To specify a
CA certificate to validate access to the VPN, check Only accept peer certificates
signed by. Then select the CA certificate from the drop-down list. If you do not
specify a certificate, the device will use any of the imported CA certificates
available on the device.
Note Import certificates from the X.509 Certificates page
(Authentication > X.509 Certificates) menu option to upload CA
Certificates and Local Certificates for use on the device.
Table 7–5: IKE Proposal Phase 1 and Phase 2 Configuration Parameters (Continued)
Parameter Description
Vista de página 218
1 2 ... 214 215 216 217 218 219 220 221 222 223 224 ... 332 333

Comentários a estes Manuais

Sem comentários