Brother International ADS-3000N Network Users Guide - Page 83

Local ID Type/ID, Remote ID Type/ID

Page 83 highlights

Security Features  Encapsulation Mode Select Transport or Tunnel.  Remote Router IP-Address Specify the IP address (IPv4 or IPv6) of the remote router. Enter this information only when the Tunnel mode is selected. NOTE SA (Security Association) is an encrypted communication method using IPsec or IPv6 that exchanges and shares information, such as the encryption method and encryption key, to establish a secure communication channel before communication begins. SA may also refer to a virtual encrypted communication channel that has been established. The SA used for IPsec establishes the encryption method, exchanges the keys, and carries out mutual authentication according to the IKE (Internet Key Exchange) standard procedure. In addition, the SA is updated periodically. Perfect Forward Secrecy (PFS) 6 PFS does not derive keys from the previous keys that were used to encrypt messages. In addition, if a key that is used to encrypt a message was derived from a parent key, that parent key is not used to derive other keys. Therefore, even if a key is compromised, the damage is limited only to the messages that were encrypted using that key. Select Enabled or Disabled. Authentication Method Select the authentication method. Select Pre-Shared Key, Certificates, EAP - MD5, or EAP - MS-CHAPv2. Pre-Shared Key When encrypting communication, the encryption key is exchanged and shared beforehand using another channel. If you selected Pre-Shared Key for the Authentication Method, type the Pre-Shared Key (up to 32 characters).  Local ID Type/ID Select the sender's ID type, and then type the ID. Select IPv4 Address, IPv6 Address, FQDN, E-mail Address, or Certificate for the type. If you selected Certificate, type the common name of the certificate in the ID field.  Remote ID Type/ID Select the recipient's ID type, and then type the ID. Select IPv4 Address, IPv6 Address, FQDN, E-mail Address, or Certificate for the type. If you selected Certificate, type the common name of the certificate in the ID field. Certificate If you selected Certificates for Authentication Method, select the certificate. NOTE You can select only the certificates that were created using the Certificate page of the Web Based Management's Security configuration screen. 79

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114

Security Features
79
6
Encapsulation Mode
Select
Transport
or
Tunnel
.
Remote Router IP-Address
Specify the IP address (IPv4 or IPv6) of the remote router. Enter this information only when the
Tunnel
mode is selected.
NOTE
SA (Security Association) is an encrypted communication method using IPsec or IPv6 that exchanges and
shares information, such as the encryption method and encryption key, to establish a secure
communication channel before communication begins. SA may also refer to a virtual encrypted
communication channel that has been established. The SA used for IPsec establishes the encryption
method, exchanges the keys, and carries out mutual authentication according to the IKE (Internet Key
Exchange) standard procedure. In addition, the SA is updated periodically.
Perfect Forward Secrecy (PFS)
PFS does not derive keys from the previous keys that were used to encrypt messages. In addition, if a key
that is used to encrypt a message was derived from a parent key, that parent key is not used to derive other
keys. Therefore, even if a key is compromised, the damage is limited only to the messages that were
encrypted using that key.
Select
Enabled
or
Disabled
.
Authentication Method
Select the authentication method. Select
Pre-Shared Key
,
Certificates
,
EAP - MD5
, or
EAP - MS-CHAPv2
.
Pre-Shared Key
When encrypting communication, the encryption key is exchanged and shared beforehand using another
channel.
If you selected
Pre-Shared Key
for the
Authentication Method
, type the
Pre-Shared Key
(up to
32 characters).
Local ID Type/ID
Select the sender’s ID type, and then type the ID.
Select
IPv4 Address
,
IPv6 Address
,
FQDN
,
E-mail Address
, or
Certificate
for the type.
If you selected
Certificate
, type the common name of the certificate in the
ID
field.
Remote ID Type/ID
Select the recipient’s ID type, and then type the ID.
Select
IPv4 Address
,
IPv6 Address
,
FQDN
,
E-mail Address
, or
Certificate
for the type.
If you selected
Certificate
, type the common name of the certificate in the
ID
field.
Certificate
If you selected
Certificates
for
Authentication Method
, select the certificate.
NOTE
You can select only the certificates that were created using the
Certificate
page of the Web Based
Management’s Security configuration screen.