HotBrick VPN 800 manual VPN Configuration, Planning the VPN

Page 55

HotBrick Network Solutions

6: VPN Configuration

Overview

Virtual Private Network (VPN), is a connection between two end points. It allows private data to be sent securely over a public network, such as Internet. VPN establishes a private network that can send data securely between two networks. We call this is by creating a “tunnel”. A VPN tunnel connects the two PCs or networks

Planning the VPN

When planning your VPN, you must make following choices first.

1.If the remote end were a network, the two-endpoint network must have different LAN IP address ranges. If the remote endpoint is a single PC running a VPN client, its destination address must be a single IP address, with subnet mask of 255.255.255.255

2.Will you be using the Internet Key Exchange (IKE) setup, or Manual Keying, in which you must specify each phase of the connection.

3.What encryption level you are going to use (DES or 3DES)?

Note: The VPN 800/2 Firewall Router uses industry standard VPN protocol. However, due to variations in how manufactures interpret these standard, many VPN products are not interoperable. Although the VPN 800/2 Firewall Router can interoperate with many other VPN products. It is not possible for VPN 800/2 Firewall Router to provide specific technical support for every other product.

Page 51

Image 55
Contents Dual WAN Firewall Router VPN 800 User’s Guide Page Table of Contents Existing Dhcp Server ………………………………………………………………………………...67 Advanced LAN Configuration ………………………………………………………………...67Introduction Internet FeaturesThis gives twice the bandwidth of a single modem PPPoE Session Management Port Switching Hub Other FeaturesPhysical Details Package ContentsLED Action Condition AC power socket Default SettingsRear Panel VPN 800/2 Firewall Router Page Overview Basic SetupProcedure Configuring the VPN 800/2 Firewall Router for your LANNo Response? IP Address Settings LAN & DhcpSubnet Mask Dhcp IP Address ConfigurationLAN Any IP Setup Dhcp ServerHotBrick Network Solutions Connection Mode Settings Primary SetupPPPoE / Pptp ConnectionType Address InfoOverview Configure PCs on your LANTCP/IP Settings Internet AccessMacintosh Clients Accessing AOLLinux Clients Fixed IP Address Port Options Advanced Port SetupOption Settings Port OptionsConnection Options Transparent BridgeLoad Balance Load BalanceInterface Settings Load BalanceLoad Balance StatisticsAdvanced PPPoE Settings Advanced PPPoEStatus ActionAdvanced Pptp Settings Advanced PptpHost IP Setup Advanced SetupHost Network Identity Settings Host IP SetupList Host NetworkBinding Host & GroupVirtual Servers Connecting to the Virtual ServersAddress Settings Virtual ServerEnable Server TypeCustom Server Settings Custom Virtual ServersCustom Virtual Servers Select Custom Server Server List NameCustom Virtual Server Special Applications Settings Special ApplicationsSelect Special Application Name Select Name Item Using a Special Application on your PC Dynamic DNS To use the Dynamic DNS featureDynamic DNS Service Settings Dynamic DNSClient or SettingsAdditional StandardMulti DMZ Multi DMZSettings Multi DMZ UPnP Settings UPnPUPnP Option NAT NAT SettingNAT Alias Settings NAT10 Advanced Feature Advanced FeaturesSettings Advanced Features Interface Smtp Simple Mail Transport Protocol Binding Using Remote Web-based SetupProtocol Protocol and Port Binding Block URL Security ManagementBlock Internet Settings Block URLSetup Access Group Access FilterIcmp Filters Filter SettingBlock Well-known PortsSession Limit Foreign Port Range Setting System Filter Exception EnableSystem Filter Exception ProtocolPlanning the VPN VPN ConfigurationIPSec Global Setting IPSec Global SettingLog Level IP Global SettingPolicy Setup Policy SetupSecurity Level VPN Policy SetupIPSec Traffic Binding Traffic SelectorKey Management Dead Peer Detection Tunnel AttributeSet Options QoS Setup QoS ConfigurationFeature Policy ConfigurationData QoS Setup ServiceNetwork Admission Policy Data Policy ConfigurationSnmp Management AssistantInformation Settings SnmpEmail Alert SystemSettings Email Alert Syslog Syslog Server Syslog ConfigurationSyslog Global Keep Sent MessagesAdmin Password Screen Admin PasswordUpgrade Firmware Upgrade FirmwareExisting Dhcp Server Advanced LAN ConfigurationRouting Settings Routing Configuring Other Routers on your LANStatic Routing Example Entry 1 Segment For Router As Default RouteFor Router Bs Default Route For the VPN 800/2 Firewall Router Gateways Routing TableOperation Operation and StatusSystem Status Device Data System StatusRestore Factory Defaults Restore Factory DefaultsWAN Status WAN StatusData NAT Status NAT StatusMisc ErrorsNAT Traffic NAT ConnectionsFCC Statement SpecificationsCE Marking Warning Overview TCP/IP Settings Windows TCP/IP SetupChecking TCP/IP Settings Windows 9x/ME Using Dhcp Select Control Panel Network and Dial-up Connection Checking TCP/IP Settings WindowsUsing a fixed IP Address Use the following IP Address Figure B-7 Network Configuration Windows XP Checking TCP/IP Settings Windows XPFigure B-8 TCP/IP Properties Windows XP Solution TroubleshootingGeneral Problems Internet AccessSolution