Linksys WAG54G manual Create a Tunnel Through the Web-Based Utility, Figure C-28 VPN Tab

Page 80

Wireless-G ADSL Gateway

Step 5: Create a Tunnel Through the Web-Based Utility

1.Open your web browser, and enter 192.168.1.1 in the Address field. Press the Enter key.

2.When the User name and Password field appears, enter the default user name and password admin. Press the Enter key.

3.From the Setup tab, click the VPN tab.

4.From the VPN tab, shown in Figure C-28, select the tunnel you wish to create in the Select Tunnel Entry drop- down box. Then click Enabled. Enter the name of the tunnel in the Tunnel Name field. This is to allow you to identify multiple tunnels and does not have to match the name used at the other end of the tunnel.

5.Enter the IP Address and Subnet Mask of the local VPN Router in the Local Secure Group fields. To allow access to the entire IP subnet, enter 0 for the last set of IP Addresses. (e.g. 192.168.1.0).

6.Enter the IP Address and Subnet Mask of the VPN device at the other end of the tunnel (the remote VPN Router or device with which you wish to communicate) in the Remote Security Router fields.

7.Select fromtwo different types of encryption: DES or 3DES (3DES is recommended because it is more secure). You may choose either of these, but it must be the same type of encryption that is being used by the VPN device at the other end of the tunnel. Or, you may choose not to encrypt by selecting Disable.

8.Select from two types of authentication: MD5 and SHA (SHA is recommended because it is more secure). As with encryption, either of these may be selected, provided that the VPN device at the other end of the tunnel is using the same type of authentication. Or, both ends of the tunnel may choose to Disable authentication.

9.Select the Key Management. Select Auto (IKE) and enter a series of numbers or letters in the Pre-shared Key field. Check the box next to PFS (Perfect Forward Secrecy) to ensure that the initial key exchange and IKE proposals are secure. You may use any combination of up to 24 numbers or letters in this field. No special characters or spaces are allowed. In the Key Lifetime field, you may optionally select to have the key expire at the end of a time period of your choosing. Enter the number of seconds you’d like the key to be useful, or leave it blank for the key to last indefinitely.

10.Click the Save Settings button to save these changes.

Your tunnel should now be established.

Appendix C: Configuring IPSec between a Windows 2000 or XP Computer and the Gateway

Figure C-28: VPN Tab

72

How to Establish a Secure IPSec Tunnel

Image 80
Contents Wireless- G Word definition How to Use this GuideCopyright and Trademarks Table of Contents Wireless-G Adsl Gateway Network Computer-to-VPN Gateway23 VPN Settings Summary Figure C-9 New Rule Properties Introduction WelcomeWhat’s in this Guide? Wireless-G Adsl Gateway Planning Your Network Gateway’s FunctionsIP Addresses What’s an IP Address?Dynamic IP Addresses What is a VPN?Dhcp Dynamic Host Configuration Protocol Servers Why do I need a VPN? VPN Gateway to VPN GatewayMAC Address Spoofing Data SniffingGetting to Know the Wireless-G Adsl Gateway Back PanelFront Panel Indication of any network activityWhile establishing the Adsl connection InternetConnecting the Wireless-G Adsl Gateway OverviewWired Connection to a Computer Ethernet ConnectionWireless Connection to a Computer Configuring the Gateway SetupWireless SecurityAccess Restrictions AdministrationApplications & Gaming StatusHow to Access the Web-based Utility Setup TabInternet Setup Multiplexing Select LLC or VC , depending on your ISPVirtual Circuit Enter the VPI and VCI ranges in the fields RFC 1483 Bridged Dynamic IPStatic IP RFC 1483 Routed RFC 2516 PPPoEBridged Mode Only RFC 2364 PPPoAOptional Settings Required by some ISPs Network SetupTZO.com Ddns TabDynDNS.org Advanced Routing Tab Advanced Routing13 Routing Table Wireless Network Wireless TabBasic Wireless Settings Tab Wireless Security Tab 15 WPA Pre-Shared Key17 WEP Wireless Access Tab Wireless Network AccessAdvanced Wireless Settings Tab Advanced WirelessAdditional Filters Security TabFirewall Local Security Gateway 22 VPNManual 24 Manual Key ManagementAdvanced VPN Tunnel Setup 26 Advanced VPN Tunnel SetupConfiguring the Gateway Security Tab Access Restrictions Tab Internet Access29 List of PCs Port Range Forwarding Applications and Gaming TabSingle Port Forwarding Port Triggering 33 Port TriggeringApplication-based QoS This setting allows you to specify traffic queue priorityAdvanced QoS Management Administration TabGateway Access Email Alerts ReportingUPnP Diagnostics Backup&RestoreFactory Defaults Ping TestUpgrade from LAN Firmware UpgradeReboot Status Tab GatewayGateway Information Internet ConnectionsLocal Network 45 Local Network47 Wireless DSL Connection 49 DSL ConnectionNeed to set a static IP address on a computer Appendix a TroubleshootingCommon Problems and Solutions Want to test my Internet connection Wireless-G Adsl Gateway Wireless-G Adsl Gateway TCP UDP IP AddressCan’t get the Internet game, server, or application to work To start over, I need to set the Gateway to factory default Need to upgrade the firmwareFirmware upgrade failed, and/or the Power LED is flashing My DSL service’s PPPoE is always disconnectingPower LED flashes continuously Frequently Asked Questions Where is the Gateway installed on the network?Is IPSec Passthrough supported by the Gateway? Does the Gateway support IPX or AppleTalk?Does the Gateway support ICQ send file? What is DMZ Hosting? What are the advanced features of the Gateway?Will the Gateway function in a Macintosh environment? Is the Gateway cross-platform compatible?What is the Ieee 802.11g standard? What Ieee 802.11b and 802.11g features are supported?What is ad-hoc mode? What is infrastructure mode?What is DSSS? What is FHSS? And what are their differences? What is the ISM band?What is Spread Spectrum? What is WEP? What is a MAC Address?How do I reset the Gateway? How do I resolve issues with signal loss?Appendix B Wireless Security Important Information for Wireless ProductsWireless-G Adsl Gateway Wireless-G Adsl Gateway Environment WAG54GHow to Establish a Secure IPSec Tunnel Create an IPSec PolicyBuild Filter Lists Filter List 1 win-RouterFilter List 2 Router -win Figure C-4 IP Filter LIstFigure C-7 IP Filter List Configure Individual Tunnel Rules Tunnel 1 win-RouterFigure C-13 Authentication Methods Figure C-16 Tunnel Setting Tab Tunnel 2 Router-winFigure C-19 IP Filter List Tab Figure C-22 Preshared Key Assign New IPSec Policy Figure C-25 Connection TypeCreate a Tunnel Through the Web-Based Utility Figure C-28 VPN TabFigure D-1 IP Configuration Screen Windows 98 or Me InstructionsWindows 2000 or XP Instructions Figure D-3 MAC Address/Physical AddressUpgrade from WAN Appendix E Upgrading FirmwareAppendix F Glossary Wireless-G Adsl Gateway Wireless-G Adsl Gateway Wireless-G Adsl Gateway Wireless-G Adsl Gateway Wireless-G Adsl Gateway Appendix G Specifications StandardsAnnex-B, WAG54G-DE UR-2 Operating Temp 0ºC to 40ºC10% to 85% Non-Condensing Storage Temp 20ºC to 70ºC Operating HumidityStorage Humidity Appendix H Regulatory Information FCC StatementWireless-G Adsl Gateway Radio EN 300 EMC EN 301 489-1, EN 301 Safety EN Belgium Applicable Power Levels in FranceLocation Frequency Range MHz Power Eirp Wireless-G Adsl Gateway Open the Wireless Network Connection window Appendix I Warranty Information Outside of Europe Mail Address Appendix J Contact InformationEurope Mail Address