SIP User's Manual 86 Document #: LTRT-65412
MP-11x & MP-124
If no IPSec methods are defined (Encryption / Authentication), the default settings, shown in
the following table are applied.
Table 3-12: Default IKE Second Phase Proposals
Proposal Encryption Authentication
Proposal 0
3DES SHA1
Proposal 1
3DES MD5
Proposal 2
DES SHA1
Proposal 3
DES MD5
Table 3-13: IPSec SPD Table Configuration Parameters
Parameter Name Description
IPSec Mode
[IPSecMode]
Defines the IPSec mode of operation.
 [0] Transport (Default)
 [1] Tunneling
Remote Tunnel IP Address
[IPSecPolicyRemoteTunnelIPAddress]
Defines the IP address of the remote
IPSec tunneling device.
Note: This parameter is available only if
the parameter IPSecMode is set to
Tunneling (1).
IPSec is
applied to
outgoing
packets
that match
the values
defined for
these
parameters.
Remote Subnet Mask
[IPsecPolicyRemoteSubnetMask]
Defines the subnet mask of the remote
IPSec tunneling device.
The default value is 255.255.255.255
(i.e., host-to-host IPSec tunnel).
Note: This parameter is available only if
the parameter IPSecMode is set to
Tunneling (1).
Remote IP Address
[IPSecPolicyRemoteIPAddress]
Destination IP address (or FQDN) to
which the IPSec mechanism is applied.
Notes:
 This parameter is mandatory.
 When an FQDN is used, a DNS
server must be configured
(DNSPriServerIP).
Local IP Address Type
[IPSecPolicyLocalIPAddressType]
Determines the local interface to which
the encryption is applied (applicable to
multiple IPs and VLANs).
 [0] OAM = OAMP interface (default).
 [1] Control = Control interface.
Source Port
[IPSecPolicySrcPort]
Defines the source port to which the
IPSec mechanism is applied.
The default value is 0 (i.e., any port).
Destination Port
[IPSecPolicyDstPort]
Defines the destination port to which the
IPSec mechanism is applied.
The default value is 0 (i.e., any port).