c68345720fe554b4bb6404d835201403.ppt
- Количество слайдов: 119
Bound Interface? IMPORTANT!
Statistics: Received packets, rxp Transmitted packets, txp Received bytes, rxb Transmitted bytes, txb MTU size in bytes SPI encryption algorithm and AH hashing algorithm SA expire in second Encryption key and hash, changes over time
Type of Encryption Special payload IDs Dead Peer Detection? Nat Transversal? Send the negotiation result packet, outboud IF, retransmit timeout for an answer Encryption negotiation: IKE. 3 DES, SHA. Auth, Pre-shared Key. Diffie Hellman Group, 5 (1536 Bytes) Type of Nat Transversal negotiation Aggressive mode message #1 OK!
Received second response from the remote peer Aggressive mode (phase 1) message #2 OK.
An encrypted notification payload A Dead Peer Detection RESPONSE packet is sent over the phase 1 negotiation
The packets always come from a remote peer to the central The available GW is checked Quick mode negotiation (phase 2) The policy is matched to a given phase 2 Tunnel mode, PFS, group 5 Encryption selection: ESP: 3 DES, Auth: SHA-1. Tunnel mode VPN Phase 2 message #1 OK.
What is the important Information in this Step of the negotiation?
Any idea on which step the error is? Where?
This is the NEW Priority This is the Device ID or Index!
c68345720fe554b4bb6404d835201403.ppt