Linksys RV082 manual Advanced

Page 55

10/100 8-Port VPN Router

Phase 1 SA Life Time: This field allows you to configure the length of time a VPN tunnel is active in Phase 1. The default value is 28,800 seconds.

Perfect Forward Secrecy: If PFS is enabled, IKE Phase 2 negotiation will generate a new key material for IP traffic encryption and authentication. If PFS is enabled, a hacker using brute force to break encryption keys is not able to obtain other or future IPSec keys.

Phase 2 DH Group: There are three groups of different prime key lengths. Group1 is 768 bits, Group2 is 1,024 bits and Group 5 is 1,536 bits. If network speed is preferred, select Group 1. If network security is preferred, select Group 5. You can choose the different Group with the Phase 1 DH Group you chose. If Perfect Forward Secrecy is disabled, there is no need to setup the Phase 2 DH Group since no new key generated, and the key of Phase 2 will be same with the key in Phase 1.

Phase 2 Encryption: Phase 2 is used to create one or more IPSec SAs, which are then used to key IPSec sessions. There are two methods of encryption, DES and 3DES. The Encryption method determines the length of the key used to encrypt/decrypt ESP packets. DES is 56-bit encryption and 3DES is 168-bit encryption. Both sides must use the same Encryption method. If users enable the AH Hash Algorithm in Advanced, then it is recommended to select Null to disable encrypting/decrypting ESP packets in Phase 2, but both sides of the tunnel must use the same setting.

Phase 2 Authentication: There are two methods of authentication, MD5 and SHA. The Authentication method determines a method to authenticate the ESP packets. Both sides must use the same Authentication method. MD5 is a one-way hashing algorithm that produces a 128-bit digest. If users enable the AH Hash Algorithm in Advanced, then it is recommended to select Null to disable authenticating ESP packets in Phase 2, but both sides of the tunnel must use the same setting.

Phase 2 SA Life Time: This field allows you to configure the length of time a VPN tunnel is active. The default value is 3,600 seconds.

Preshared Key: Use character and hexadecimal values in this field, e.g. “My_@123” or “4d795f40313233.” The max entry of this field is 30-digit. Both sides must use the same Pre-shared Key. It’s recommended to change Preshared keys regularly to maximize VPN security.

Click the Save Settings button to save the settings or click the Cancel Changes button to undo the changes.

Advanced

For most users, the settings on the VPN page should be satisfactory. This device provides an advanced IPSec setting page for some special users such as reviewers. Click the Advanced button to link you to that page. Advanced settings are only for IKE with Preshared Key mode of IPSec.

Chapter 5: Setting Up and Configuring the Router

46

VPN Tab - Gateway to Gateway

Image 55
Contents 10/100 8-Port Copyright and Trademarks How to Use this GuideWord definition Table of Contents Appendix E Battery Replacement Appendix a TroubleshootingAppendix B Installing the Linksys VPN Client Appendix D Physical Setup of the Router10/100 8-Port VPN Router VPN Router-to-VPN Router VPN List of Figures21 Setup Tab Advanced Routing 51 VPN tab Client to Gateway Remote Group Setup Figure C-3 MAC Address/Physical Address Welcome IntroductionIP a protocol used to send data over a network Adapter a device that adds network functionality to your PC What’s in this Guide?Introduction What’s in this Guide? An Introduction to LANs Networking BasicsUse of IP Addresses MAC Address Spoofing Why do I need a VPN?What is a VPN? VPN Router-to-VPN Router VPN VPN Router to VPN RouterLAN WAN2 WAN1 Getting to Know the RouterBack Panel Power Overview Connecting the RouterConnect a PC Connection InstructionsSetup Tab Setting Up and Configuring the RouterSystem Summary Tab System Management Tab Dhcp TabDomain a specific name for a network of computers Log Tab Port Management TabFirewall Tab VPN TabSystem Summary Tab How to Access the Web-based UtilitySystem Information Network Setting Status ConfigurationPort Statistics VPN Setting Status Firewall Setting StatusLog Setting Status WAN Connection Type LAN SettingDual-WAN / DMZ Setting NetworkPPPoE Point-to-Point Protocol over Ethernet most DSL users Static IPPptp Point-to-Point Tunneling Protocol Transparent Bridge Heart Beat SignalSetup Tab Password Setup Tab TimeTime Setup Tab Forwarding Setup Tab DMZ HostPort Triggering Port Range ForwardingSetup Tab One-to-One NAT Setup Tab UPnPSetup Tab Ddns Setup Tab MAC CloneDynamic Routing Setup Tab Advanced RoutingEnter the following data to create a static route entry Static RoutingStatic IP Dhcp Tab SetupSetup Dynamic IPDual-WAN Network Service DetectionDhcp Tab Status System Management Tab Dual-WANProtocol Binding Bandwidth27 System Management Tab Snmp System Management Tab SnmpDNS Name Lookup System Management Tab DiagnosticPing Firmware Download System Management Tab Factory DefaultSystem Management Tab Firmware Upgrade Firmware UpgradePort Management Tab Port Setup System Management Tab Setting BackupSystem Management Tab Restart 36 Port Management Tab Port Status Port Management Tab Port StatusFirewall Tab General Restrict WEB features38 Firewall Tab Access Rules Firewall Tab Access RulesServices Add a New Access RuleScheduling Website Blocking by Keywords Firewall Tab Content FilterEditing an Access Rule Forbidden DomainsSummary VPN Tab SummaryTunnel Status VPN Clients Status GroupVPN StatusVPN Tab Gateway to Gateway Local Group Setup47 VPN tab Gateway to Gateway Remote Group Setup Remote Group SetupManual IPSec SetupBit a binary digit IKE with Preshared Key automatic Advanced VPN Tab Client to Gateway With Tunnel Enabled49 VPN tab Client to Gateway 51 VPN tab Client to Gateway Remote Group Setup With Group VPN enabled 52 VPN tab Client to Gateway IPSec Setup 10/100 8-Port VPN Router 53 VPN tab Client to Gateway Advanced 54 VPN tab VPN Client Access VPN Tab VPN Client AccessIP Address Range Users SettingVPN Tab VPN Pass Through VPN Tab Pptp ServerMail Log SettingLog Tab System Log Syslog59 Log tab System Statistics Log Tab System StatisticsWizard Tab Basic Setup62 Basic Setup Wizard Host and Domain Name 65 Access Rule Wizard What is Access Rules Access Rule Setup67 Access Rule Wizard Select the Service 69 Access Rule Wizard Select the Destination Linksys Web Site Support TabLogout Tab On Line ManualNeed to set a static IP address on a PC Appendix a TroubleshootingCommon Problems and Solutions For Windows 98 and MillenniumFor Windows XP For WindowsFor Windows 98 and Millennium 10/100 8-Port VPN Router Need to set up a server behind my Router Am not able to access the Router’s Web-based Utility SetupTCP Application Start and End Protocol IP Address EnableCan’t get the Internet game, server, or application to work Application Start and End Protocol IP Address EnabledFor Netscape 4.7 or higher To start over, I need to set the Router to factory defaultNeed to upgrade the firmware For Microsoft Internet Explorer 5.0 or higherMy DSL service’s PPPoE is always disconnecting Firmware upgrade failedNeed to use port triggering Does the Router support IPX or AppleTalk? Frequently Asked QuestionsWhere is the Router installed on the network? Is IPSec Passthrough supported by the Router?How can I block corrupted FTP downloads? Is the Router cross-platform compatible? What is DMZ Hosting?How do I get mIRC to work with the Router? How many ports can be simultaneously forwarded?Which modems are compatible with the Router? How can I check whether I have static or Dhcp IP addresses?Figure B-2 Linksys VPN Installation Complete Appendix B Installing the Linksys VPN ClientFigure B-3 Linksys QuickVPN Windows 2000 or XP Instructions Windows 98 or Me InstructionsFigure C-3 MAC Address/Physical Address For the Router’s Web-based UtilityRack-Mounting the Router Appendix D Physical Setup of the RouterSetting up the Router Placement of the Router10/100 8-Port VPN Router Figure D-3 Wall-Mounting the Router Wall-Mounting the RouterFigure D-4 Wall-Mounting Hardware Replacing a Lithium Battery Appendix E Battery ReplacementAppendix F Upgrading Firmware Figure F-1 Upgrade FirmwareShared Resources Appendix G Windows HelpNetwork Neighborhood/My Network Places Appendix H Glossary 10/100 8-Port VPN Router 10/100 8-Port VPN Router 10/100 8-Port VPN Router SPI Firewall, DES and 3DES Encryption for IPSec VPN Tunnel Appendix I SpecificationsStandards Ieee 802.3, 802.3u Ports DMZ/Internet PortLimited Warranty Appendix J Warranty InformationFCC Statement Appendix K Regulatory InformationNeed to contact Linksys? Appendix L Contact InformationInformation section in this Guide

RV082 specifications

The Linksys RV082 is a robust dual WAN VPN router that stands out in the market for small to medium-sized businesses seeking reliable network connectivity and security. Designed to meet the demands of a dynamic business environment, the RV082 offers a host of features that enhance both performance and reliability.

One of the primary attributes of the RV082 is its dual WAN capability. This feature allows businesses to connect to two different internet connections simultaneously, ensuring uninterrupted internet access. In case one connection fails, the router can automatically switch to the other, minimizing downtime and maintaining productivity. This failover capability is essential for businesses that rely heavily on internet connectivity.

The RV082 also boasts impressive VPN support, enabling secure communication between remote users and branch offices. With support for up to 50 simultaneous VPN connections, the router accommodates a growing workforce that may require access to the company’s network from remote locations. This is particularly beneficial for businesses with telecommuting employees or those that operate across multiple locations.

Security is a paramount concern for any business, and the RV082 addresses this with various built-in security features. It utilizes advanced firewall capabilities, including Stateful Packet Inspection (SPI) and Denial of Service (DoS) protection, safeguarding internal networks from external threats. The router also supports strong encryption protocols such as IPSec and PPTP, ensuring that sensitive data transmitted over the VPN remains secure.

Performance-wise, the RV082 includes eight switched LAN ports, allowing numerous devices to connect directly to the network without the need for additional hardware. This feature simplifies network management and helps keep connectivity organized. Furthermore, the router supports Quality of Service (QoS) prioritization, which allows businesses to allocate bandwidth effectively among different applications and users, promoting seamless performance even during high traffic periods.

The user-friendly web-based interface facilitates easy configuration and management, making it accessible for users with varying levels of technical expertise. Additionally, the RV082’s compact design ensures that it can fit into nearly any office environment without taking up too much space.

In summary, the Linksys RV082 is an excellent choice for businesses looking for a dependable and secure networking solution. With its dual WAN capabilities, extensive VPN support, robust security features, and user-friendly management tools, the RV082 successfully meets the challenging needs of modern business networking.