Question regarding Phase 1/2 Settings for multiple Site2Site VPNs

Options
WiSy
WiSy Posts: 5
First Anniversary Friend Collector First Comment
edited April 2021 in Security
Hi,

Im getting told (by Zyxel Staff) to use diffrent Phase 1/2 Proposal for multiple Site2Site VPNs to avoid Problems

The following Screenshot shows the current Situation.


Phase 1


Phase 2


My Problem:

Im not really sure how to set up diffrent Encryption/Authentification Settings without compromising security.
It would really helpfull if someone could provide me an example how to set this up properly.

Best Regards

Fabrice


All Replies

  • Zyxel_Charlie
    Zyxel_Charlie Posts: 1,034  Zyxel Employee
    First Anniversary Friend Collector First Answer First Comment
    Options
    @WiSy
    Regarding to this case,
    you can configure Local/Peer ID to separate the multiple site to site VPNs.
    Also, for the Encryption/Authentication setting, we suggest to use AES128/SHA1 as algorithm. 

Security Highlight