SonicWALL 3 Home Security System User Manual


 
222
SONICWALL SONICOS STANDARD 3.0 ADMINISTRATORS GUIDE
C
HAPTER
36:
Configuring VPN Settings
8
Click the Proposals tab.
9
In the IKE (Phase 1) Proposal section, the default settings offer a secure connection
configuration, however, the settings can be modified to reflect your preferences. In addition to
3DES, AES-128, AES-192, and AES-256 can be selected for encryption methods.
10
In the Ipsec (Phase 2) Proposal section, the default settings offer a secure connection
configuration, however, the settings can be modified to reflect your preferences. In addition to
3DES, AES-128, AES-192, and AES-256 can be selected for encryption methods. Selecting
Enable Perfect Forward Secrecy prevents a hacker using brute force to break encryption keys
from obtaining the current and future IPSec keys. During Phase 2 negotiation, an additional Diffie-
Hellman key exchange is performed. This option adds an additional layer of security to the VPN
tunnel.