DrayTek UK Users' Community Forum
Help, Advice and Solutions from DrayTek Users
2830 to ASA 5510 VPN
- bitgin
- Topic Author
- Offline
- New Member
Less
More
- Posts: 1
- Thank you received: 0
07 May 2013 10:55 #76069
by bitgin
2830 to ASA 5510 VPN was created by bitgin
As the title suggests I've been given the task of connecting a 2830 to an ASA 5510 with an IPSEC vpn. Here are the specs I've been given from the cisco end:
ISAKMP (Phase 1) Encryption Algoryithm: Pre-g2-aes-128-sha
ISAKMP (Phase 1) Hash Algoryithm: SHA-1
ISAKMP (Phase 1) Diffie-Hellman group: Group 2
ISAKMP (Phase 1) Key Lifetime: 28800 sec
IPsec (Phase 2) Mode: Tunnel
Ipsec (Phase 2) Encryption Protocol: G2-esp-aes-128-sha
Ipsec (Phase 2) MAC Algorithm: SHA
Ipsec (Phase 2) SA Lifetime: 3600 sec
It all looks fairly standard stuff to me but then its been a couple of years since I had to delve into IPSEC. Can anyone see any potential pitfalls with this plan? And or post some links to tutorials/guides on doing this kind setup?
Thanks
ISAKMP (Phase 1) Encryption Algoryithm: Pre-g2-aes-128-sha
ISAKMP (Phase 1) Hash Algoryithm: SHA-1
ISAKMP (Phase 1) Diffie-Hellman group: Group 2
ISAKMP (Phase 1) Key Lifetime: 28800 sec
IPsec (Phase 2) Mode: Tunnel
Ipsec (Phase 2) Encryption Protocol: G2-esp-aes-128-sha
Ipsec (Phase 2) MAC Algorithm: SHA
Ipsec (Phase 2) SA Lifetime: 3600 sec
It all looks fairly standard stuff to me but then its been a couple of years since I had to delve into IPSEC. Can anyone see any potential pitfalls with this plan? And or post some links to tutorials/guides on doing this kind setup?
Thanks
Please Log in or Create an account to join the conversation.
- sicon
- Offline
- Contributor
Less
More
- Posts: 642
- Thank you received: 0
07 May 2013 13:54 #76070
by sicon
Replied by sicon on topic Re: 2830 to ASA 5510 VPN
there are guides on Draytek.com but to be honest the above looks pretty standard.
I usually do MD5 instead of AES but not for any particular reason.
I usually do MD5 instead of AES but not for any particular reason.
Please Log in or Create an account to join the conversation.
Moderators: Chris, Sami
Copyright © 2024 DrayTek