168 VPN advanced configurationNN47928-500NN47928-500IKE pre-shared secret configuration parametersThe following section describes the parameters for configuration of IKE preshared secret locatedat Configuration, VPN, VPN Settings, IKE Pre-shared Secret tab.Variable definitionsThe following table describes the variables and values for configuring IKE preshared secret.Authentication Key Type the IPSec Authentication Key.IPSec Encryption Select the IPSec Encryption. Select one of the following options:• Data Encryption Standard (DES) – is a standard for encrypting datathat uses a 64 bit key to encrypt data, but only 56 bits are usable. Thisstandard is considered inadequate for data protection as this standarddo not match the speed of computer.• Triple Data Encryption Standard (3DES) – processes each block ofdata using a different key each time resulting in a significantly moresecure message.• Advanced Encryption Standard (AES128, AES192, AES256) – has afixed block size of 128 bits and a key size of 128, 192 or 256 bits. Dueto the fixed block size of 128 bits, AES operates on a 4x4 array ofbytes.Encryption Keys 1, 2, and 3 The encryption key settings depend on the selected IPSec Encryption:• DES - specify a key for Encryption Key 1 only, length 16• 3DES - specify encryption keys 1, 2, and 3• AES 128 - specify a key for Encryption Key 1 only, length 32• AES 192 - specify a key for Encryption Key 1 only, length 48• AES 256 - specify a key for Encryption Key 1 only, length 64Outgoing SPI Type the security parameter index for the outgoing traffic.Incoming SPI Type the security parameter index for the incoming traffic.Anti Replay Specifies the anti-replay functionality of the security protocol. Select one ofthe following:• ENABLE - activates the anti-replay functionality of the securityprotocol.• DISABLE - deactivates the anti-replay functionality of the securityprotocol.The default is ENABLE.Variable ValuePolicy Action Select this check box to create a policy action.Policy Name Type a IPsec policy name. Each policy must have a unique name.Existing Policies Select an existing policy for the IPsec policy.Interface Name Select the name of the interface for which you want to apply the policy.Policy Status Type the status of the IPsec policy.Variable Value