IPSec Security Association Settings

Peer ID 

ID that sets the IP address of the peer or end point of the IPSec tunnel. 

ESP Security Proposal 

Protocol and encryption that are used to provide security for the security association. The protocol can be either IP authentication header (AH) or encapsulating security payload (ESP). The encryption standard can be DES, 3DES, or MD5. 

ESP Inbound SPI 

Security parameter index for the ESP protocol used on the remote node. The destination value assigned to the local node matches the local value at the remote end. 

ESP Outbound SPI 

Security parameter index for the ESP protocol used on the local node---this PortMaster. The local value assigned to the local node matches the destination value at the remote node. 

AH Security Proposal 

 

Protocol and encryption that are used to provide security for the security association. The protocol can be either IP authentication header (AH) or encapsulating security payload (ESP). The encryption standard can be DES, 3DES, or MD5.

AH Inbound SPI 

Security parameter index for the AH protocol used on the remote node. The local value assigned to the local node matches the destination value at the remote node. 

AH Outbound SPI 

 

Security parameter index for the AH protocol used on the local node---this PortMaster. The destination value assigned to the local node matches the local value at the remote end. 

ESP Inbound Key

ESP Outbound Key

AH Inbound Key

AH Outbound Key

Keys can be entered by using hexadecimal (base 16), decimal (base 10), or binary (base 2). Keys are written similar to filter IP addresses.

Keys must fall on 8-bit boundaries. Some protocols only allow specific key lengths, while others allow a range of lengths. When keys are stored or displayed, they are in hexadecimal format.

Local Address

IP Address of the PortMaster to be placed in outgoing packets.