Edimax ER-1088 Available from Edimax USA Manual - Page 63

Settings - IPSec Policy Options

Page 63 highlights

Figure 6-3: IPSec Policy Options Settings - IPSec Policy Options Dead Peer Detection Feature • Dead Peer Detection (DPD) - If set to Enable, a device will periodically send HELLO/ACK messages to check if the tunnel is alive when both peers of a VPN tunnel provide DPD mechanism. Once a dead peer is detected, a device will end the connection so it can be re-established. This is the primary method of VPN failover or backup. • Detection - If set to Enable, this will enable the following Check Method which you have selected to work: • Check Method: 1. Heartbeat - Sends a unidirectional ('HELLO' only) message to determine connection aliveness. 2. ICMP Host - It uses ICMP packets to determine connection aliveness 3. DPD (RFC 3706) - Uses a bi-directional ('HELLO/ACK') message to determine connection aliveness. • Check After Idle - Indicates the time period in which no traffic Page 59

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97

Figure 6-3: IPSec Policy Options
Settings – IPSec Policy Options
Dead Peer Detection
Feature
Dead Peer Detection (DPD)
If
set to
Enable
,
a device will
periodically send HELLO/ACK messages to check if the tunnel is
alive when both peers of a VPN tunnel provide DPD mechanism.
Once a dead peer is detected, a device will end the connection so it
can be re-established. This is the primary method of VPN failover or
backup.
Detection
If set to
Enable
,
this will enable the following Check
Method which you have selected to work:
Check Method
:
1.
Heartbeat
Sends a unidirectional (‘
HELLO’
only) message to
determine connection aliveness.
2.
ICMP Host
It uses
ICMP
packets to determine connection
aliveness
3.
DPD (RFC 3706)
– Uses a bi-directional (
‘HELLO/ACK’
) message
to determine connection aliveness.
Check After Idle
– Indicates the time period in which no traffic
Page 59