HotBrick VPN 800 manual VPN Policy Setup, IPSec Traffic Binding, Traffic Selector, Security Level

Page 59

HotBrick Network Solutions

VPN Policy Setup

 

VPN Tunnel List– It shows the tunnels that you have entered. The

 

router can setup up to 20 tunnels

IPSec Traffic Binding

Tunnel Name– In order to distinguish the tunnel, you have to give

“Tunnel” a name..

 

 

Tunnel – Only enable tunnel check box, the tunnel can be connected.

 

WAN port – You can choose WAN1, WAN2 or Any to make the VPN

 

connection.

 

PPPoE Session– If you are using PPPoE to make the connection, and

 

some ISP offers multiple PPPoE session, you can select these PPPoE

 

session to construct VPN tunnels.

 

Local Identity Type – You can either choose your Local WAN IP or

 

Domain name, Distinguished Name as your local identity.

Traffic Selector

ServiceProtocol Type: You can choose either TCP/UDP/ICMP/GRE

 

protocol as your connection protocol. By default the protocol type is

 

“Any”.

 

Local Security Network– These entries identify the private network on

 

this VPN router, the hosts of which can use the LAN-to-LAN

 

connection. You can choose a single IP address, the subnet, or a

 

selected IP range to make VPN LAN-to-LAN connection.

 

Remote Security Network– These entries identify the private network

 

on the remote peer VPN router whose hosts can use the LAN-to-LAN

 

connection. You can choose a single IP address, the subnet, or a

 

selected IP range to make VPN connection

 

Remote Security Gateway – You can either select remote side

 

domain name or remote side IP address (WAN IP address) as your

 

remote side security gateway.

Security Level

Encryption Method – It specifies the encryption mechanism to use.

 

Data encryption makes the data unreadable if intercepted. There are

 

three encryption method available; DES/3DES and AES. The default

 

is null.

 

Authentication – It specifies the packets authentication mechanism to

 

use. Packets authentication proves that data comes from source you

 

think it comes from. There are three authentications available. MD5,

 

SHA1 and SHA2.

Page 55

Image 59
Contents Dual WAN Firewall Router VPN 800 User’s Guide Page Table of Contents Existing Dhcp Server ………………………………………………………………………………...67 Advanced LAN Configuration ………………………………………………………………...67This gives twice the bandwidth of a single modem Internet FeaturesIntroduction PPPoE Session Management Port Switching Hub Other FeaturesPhysical Details Package ContentsLED Action Condition Rear Panel VPN 800/2 Firewall Router Default SettingsAC power socket Page Overview Basic SetupProcedure Configuring the VPN 800/2 Firewall Router for your LANNo Response? Subnet Mask Settings LAN & DhcpIP Address Dhcp IP Address ConfigurationLAN Any IP Setup Dhcp ServerHotBrick Network Solutions Connection Mode Settings Primary SetupPPPoE / Pptp ConnectionType Address InfoOverview Configure PCs on your LANTCP/IP Settings Internet AccessLinux Clients Accessing AOLMacintosh Clients Fixed IP Address Port Options Advanced Port SetupOption Settings Port OptionsConnection Options Transparent BridgeLoad Balance Load BalanceInterface Settings Load BalanceLoad Balance StatisticsAdvanced PPPoE Settings Advanced PPPoEStatus ActionAdvanced Pptp Settings Advanced PptpHost IP Setup Advanced SetupHost Network Identity Settings Host IP SetupList Host NetworkBinding Host & GroupVirtual Servers Connecting to the Virtual ServersAddress Settings Virtual ServerEnable Server TypeCustom Server Settings Custom Virtual ServersCustom Virtual Servers Select Custom Server Server List NameCustom Virtual Server Select Special Application Name Select Name Item Settings Special ApplicationsSpecial Applications Using a Special Application on your PC Dynamic DNS To use the Dynamic DNS featureDynamic DNS Service Settings Dynamic DNSClient or SettingsAdditional StandardMulti DMZ Multi DMZSettings Multi DMZ UPnP Option Settings UPnPUPnP NAT NAT SettingNAT Alias Settings NAT10 Advanced Feature Advanced FeaturesSettings Advanced Features Protocol Protocol and Port Binding Using Remote Web-based SetupInterface Smtp Simple Mail Transport Protocol Binding Block URL Security ManagementBlock Internet Settings Block URLSetup Access Group Access FilterIcmp Filters Filter SettingBlock Well-known PortsSession Limit Foreign Port Range Setting System Filter Exception EnableSystem Filter Exception ProtocolPlanning the VPN VPN ConfigurationIPSec Global Setting IPSec Global SettingLog Level IP Global SettingPolicy Setup Policy SetupSecurity Level VPN Policy SetupIPSec Traffic Binding Traffic SelectorKey Management Set Options Tunnel AttributeDead Peer Detection QoS Setup QoS ConfigurationFeature Policy ConfigurationData QoS Setup ServiceNetwork Admission Policy Data Policy ConfigurationSnmp Management AssistantInformation Settings SnmpEmail Alert SystemSettings Email Alert Syslog Syslog Server Syslog ConfigurationSyslog Global Keep Sent MessagesAdmin Password Screen Admin PasswordUpgrade Firmware Upgrade FirmwareRouting Advanced LAN ConfigurationExisting Dhcp Server Static Routing Example Configuring Other Routers on your LANSettings Routing Entry 1 Segment For Router As Default RouteFor Router Bs Default Route For the VPN 800/2 Firewall Router Gateways Routing TableSystem Status Operation and StatusOperation Device Data System StatusRestore Factory Defaults Restore Factory DefaultsWAN Status WAN StatusData NAT Status NAT StatusMisc ErrorsNAT Traffic NAT ConnectionsCE Marking Warning SpecificationsFCC Statement Checking TCP/IP Settings Windows 9x/ME Windows TCP/IP SetupOverview TCP/IP Settings Using Dhcp Select Control Panel Network and Dial-up Connection Checking TCP/IP Settings WindowsUsing a fixed IP Address Use the following IP Address Figure B-7 Network Configuration Windows XP Checking TCP/IP Settings Windows XPFigure B-8 TCP/IP Properties Windows XP Solution TroubleshootingGeneral Problems Internet AccessSolution