Line 417: |
Line 417: |
| ! style="text-align: left; vertical-align: top;" | Enabled | | ! style="text-align: left; vertical-align: top;" | Enabled |
| | style="text-align: left; vertical-align: top;" | yes {{!}} no; Default: '''no''' | | | style="text-align: left; vertical-align: top;" | yes {{!}} no; Default: '''no''' |
− | | style="text-align: left; vertical-align: top;" | The encryption algorithm must match with another incoming connection | + | | style="text-align: left; vertical-align: top;" | Toggles GRE Tunnel ON or OFF |
| |- | | |- |
| ! style="text-align: left; vertical-align: top;" | Remote endpoint IP address | | ! style="text-align: left; vertical-align: top;" | Remote endpoint IP address |
− | | style="text-align: left; vertical-align: top;" | MD5 {{!}} SHA1 {{!}} SHA256 {{!}} SHA384 {{!}} SHA512; Default: '''SHA1''' | + | | style="text-align: left; vertical-align: top;" | host {{!}} ip; Default: " " |
− | | style="text-align: left; vertical-align: top;" | The authentication algorithm must match with another incoming connection | + | | style="text-align: left; vertical-align: top;" | Specifies remote WAN IP address or hostname |
| |- | | |- |
| ! style="text-align: left; vertical-align: top;" | Remote network | | ! style="text-align: left; vertical-align: top;" | Remote network |
− | | style="text-align: left; vertical-align: top;" | MD5 {{!}} SHA1 {{!}} SHA256 {{!}} SHA384 {{!}} SHA512; Default: '''SHA1''' | + | | style="text-align: left; vertical-align: top;" | ip; Default: " " |
− | | style="text-align: left; vertical-align: top;" | The hash algorithm must match with another incoming connection | + | | style="text-align: left; vertical-align: top;" | LAN IP address of the remote device |
| |- | | |- |
| ! style="text-align: left; vertical-align: top;" | Remote network netmask | | ! style="text-align: left; vertical-align: top;" | Remote network netmask |
− | | style="text-align: left; vertical-align: top;" | MODP768 {{!}} MODP1024 {{!}} MODP1536 {{!}} MODP2048 {{!}} MODP3072 {{!}} MODP4096; Default: '''MODP1536''' | + | | style="text-align: left; vertical-align: top;" | integer [0..32]; Default: " " |
− | | style="text-align: left; vertical-align: top;" | The DH (Diffie-Helman) group must match with another incoming connection | + | | style="text-align: left; vertical-align: top;" | LAN netmask of the remote device |
| |- | | |- |
| ! style="text-align: left; vertical-align: top;" | Local tunnel IP | | ! style="text-align: left; vertical-align: top;" | Local tunnel IP |
− | | style="text-align: left; vertical-align: top;" | MODP768 {{!}} MODP1024 {{!}} MODP1536 {{!}} MODP2048 {{!}} MODP3072 {{!}} MODP4096 {{!}} No PFS; Default: '''MODP1536''' | + | | style="text-align: left; vertical-align: top;" | ip; Default: " " |
− | | style="text-align: left; vertical-align: top;" | The PFS (Perfect Forward Secrecy) group must match with another incoming connection | + | | style="text-align: left; vertical-align: top;" | Local virtual IP address. Can’t be in the same subnet as LAN network |
| |- | | |- |
| ! style="text-align: left; vertical-align: top;" | MTU | | ! style="text-align: left; vertical-align: top;" | MTU |
− | | style="text-align: left; vertical-align: top;" | time; Default: '''8 hours''' | + | | style="text-align: left; vertical-align: top;" | integer [0..1500]; Default: '''1476''' |
− | | style="text-align: left; vertical-align: top;" | Duration for the phase | + | | style="text-align: left; vertical-align: top;" | The maximum transmission unit in bytes |
| |- | | |- |
| ! style="text-align: left; vertical-align: top;" | TTL | | ! style="text-align: left; vertical-align: top;" | TTL |
− | | style="text-align: left; vertical-align: top;" | time; Default: '''8 hours''' | + | | style="text-align: left; vertical-align: top;" | integer [0..255]; Default: '''255''' |
− | | style="text-align: left; vertical-align: top;" | Duration for the phase | + | | style="text-align: left; vertical-align: top;" | Fixed time-to-live (TTL) value on tunneled packets. The 0 is a special value meaning that packets inherit the TTL value |
| |- | | |- |
| ! style="text-align: left; vertical-align: top;" | PMTUD | | ! style="text-align: left; vertical-align: top;" | PMTUD |
− | | style="text-align: left; vertical-align: top;" | time; Default: '''8 hours''' | + | | style="text-align: left; vertical-align: top;" | yes {{!}} no; Default: '''no''' |
− | | style="text-align: left; vertical-align: top;" | Duration for the phase | + | | style="text-align: left; vertical-align: top;" | Toggles the Path Maximum Transmission Unit Discovery (PMTUD) status on this tunnel ON or OFF |
| |- | | |- |
| ! style="text-align: left; vertical-align: top;" | Redirect LAN to GRE | | ! style="text-align: left; vertical-align: top;" | Redirect LAN to GRE |
− | | style="text-align: left; vertical-align: top;" | time; Default: '''8 hours''' | + | | style="text-align: left; vertical-align: top;" | yes {{!}} no; Default: '''no''' |
− | | style="text-align: left; vertical-align: top;" | Duration for the phase | + | | style="text-align: left; vertical-align: top;" | Redirects LAN traffic to the GRE interface |
| |- | | |- |
| ! style="text-align: left; vertical-align: top;" | Enable Keep alive | | ! style="text-align: left; vertical-align: top;" | Enable Keep alive |
− | | style="text-align: left; vertical-align: top;" | time; Default: '''8 hours''' | + | | style="text-align: left; vertical-align: top;" | yes {{!}} no; Default: '''no''' |
− | | style="text-align: left; vertical-align: top;" | Duration for the phase | + | | style="text-align: left; vertical-align: top;" | Gives the ability for one side to originate and receive keep alive packets to and from a remote router |
| |- | | |- |
| ! style="text-align: left; vertical-align: top;" | Keep Alive host | | ! style="text-align: left; vertical-align: top;" | Keep Alive host |
− | | style="text-align: left; vertical-align: top;" | time; Default: '''8 hours''' | + | | style="text-align: left; vertical-align: top;" | host {{!}} ip; Default: " " |
− | | style="text-align: left; vertical-align: top;" | Duration for the phase | + | | style="text-align: left; vertical-align: top;" | Keep Alive IP address to send pings to. Preferably this should be an IP address which belongs to the LAN network on the remote device |
| |- | | |- |
| ! style="text-align: left; vertical-align: top;" | Keep alive interval | | ! style="text-align: left; vertical-align: top;" | Keep alive interval |
− | | style="text-align: left; vertical-align: top;" | time; Default: '''8 hours''' | + | | style="text-align: left; vertical-align: top;" | integer [0..255]; Default: " " |
− | | style="text-align: left; vertical-align: top;" | Duration for the phase | + | | style="text-align: left; vertical-align: top;" | Frequency at which ICMP packets are sent by the Keep Alive function (in seconds) |
| |- | | |- |
| |} | | |} |