Tuesday, October 9, 2018

IPSec tunnel parameter best practices

What do you use for IPSec VPN parameters for site-to-site VPNs? I read from (Juniper' site or Juniper blogs or something) that for example in phase 2 with 3600s key lifetime MD5 is totally fine as the key lifetime is so short and MD5 provides better performance. However I've lost the link since and now a partner would like to use different parameters as "they are more secure".



No comments:

Post a Comment