Linksys AG041 (EU) manual VPN Gateway-to-VPN Gateway

Page 14

ADSL Gateway with 4-Port Switch

data inside of a local network. But what do you do once information is sent outside of your local network, when emails are sent to their destination, or when you have to connect to your company's network when you are out on the road? How is your data protected?

That is when a VPN can help. VPNs secure data moving outside of your network as if it were still within that network.

When data is sent out across the Internet from your computer, it is always open to attacks. You may already have a firewall, which will help protect data moving around or held within your network from being corrupted or intercepted by entities outside of your network, but once data moves outside of your network - when you send data to someone via email or communicate with an individual over the Internet - the firewall will no longer protect that data.

At this point, your data becomes open to hackers using a variety of methods to steal not only the data you are transmitting but also your network login and security data. Some of the most common methods are as follows:

1) MAC Address Spoofing

Packets transmitted over a network, either your local network or the Internet, are preceded by a packet header. These packet headers contain both the source and destination information for that packet to transmit efficiently. A hacker can use this information to spoof (or fake) a MAC address allowed on the network. With this spoofed MAC address, the hacker can also intercept information meant for another user.

2) Data Sniffing

Data "sniffing" is a method used by hackers to obtain network data as it travels through unsecured networks, such as the Internet. Tools for just this kind of activity, such as protocol analyzers and network diagnostic tools, are often built into operating systems and allow the data to be viewed in clear text.

3) Man in the Middle Attacks

Once the hacker has either sniffed or spoofed enough information, he can now perform a "man in the middle" attack. This attack is performed, when data is being transmitted from one network to another, by rerouting the data to a new destination. Even though the data is not received by its intended recipient, it appears that way to the person sending the data.

These are only a few of the methods hackers use and they are always developing more. Without the security of your VPN, your data is constantly open to such attacks as it travels over the Internet. Data travelling over the Internet will often pass through many different servers around the world before reaching its final destination. That's a long way to go for unsecured data and this is when a VPN serves its purpose.

Figure 2-3: VPN Gateway-to-VPN Gateway

MAC Address: the unique address that a manufacturer assigns to each networking device

firewall: a set of related programs located at a network gateway server that protects the resources of a network from users from other networks.

Chapter 2: Planning your Network

7

Why do I need a VPN?

Image 14
Contents Adsl Gateway Word definition How to Use this GuideCopyright and Trademarks Table of Contents Adsl Gateway with 4-Port Switch List of Figures A Network with the Gateway23 Applications & Gaming Port Triggering Figure B-23 New Preshared Key Introduction WelcomeWhat’s in this Guide? Adsl Gateway with 4-Port Switch IP Addresses Planning your NetworkGateway’s Functions What’s an IP Address?Dynamic IP Addresses What is a VPN?Dhcp Dynamic Host Configuration Protocol Servers Encryption encoding data transmitted in a networkWhy do I need a VPN? VPN Gateway to VPN GatewayVPN Gateway-to-VPN Gateway Getting to Know the Adsl Gateway Back PanelFront Panel DSLISP a company that provides access to the Internet Connecting the Adsl GatewayConnecting to a Computer OverviewConnect power Access Restrictions Configuring the Adsl GatewaySetup SecurityApplications & Gaming How to Access the Web-based UtilityAdministration StatusInternet Setup Setup TabBasic Setup RFC 1483 Bridged Dynamic IP Static IPRFC 1483 Routed RFC 2516 PPPoEBridged Mode Only RFC 2364 PPPoAOptional Settings Required by some ISPs Network SetupDdns DynDNS.orgStatic Routing Advanced RoutingAdvanced Routing 12 Routing Table Security Tab FirewallVPN Software instructions for the computer15 VPN with Manual Key Management Advanced VPN Tunnel Setup PhaseConfiguring the Adsl Gateway Security Tab Access Restrictions Tab Internet Access19 List of PCs Applications and Gaming Tab Single Port ForwardingPort Range Forwarding Port TriggeringDMZ Management Administration TabGateway Access UPnP Email Alerts ReportingLog Smtp the standard e-mail protocol on the InternetPing Test Ping Test Parameters DiagnosticsFactory Defaults Firmware Upgrade 29 Administration tab Firmware UpgradeGateway Information Status TabGateway Internet ConnectionsLocal Network DSL ConnectionNeed to set a static IP address on a computer Appendix a TroubleshootingCommon Problems and Solutions Want to test my Internet connection Open a command prompt. For Windows 98 and Me Adsl Gateway with 4-Port Switch TCP UDP VPN Ipsec Can’t get the Internet game, server, or application to workFirmware upgrade failed, and/or the Power LED is flashing To start over, I need to set the Gateway to factory defaultNeed to upgrade the firmware My DSL service’s PPPoE is always disconnecting Where is the Gateway installed on the network? Frequently Asked QuestionsPower LED flashes continuously Is IPSec Passthrough supported by the Gateway?What is Network Address Translation and what is it used for? Does the Gateway support ICQ send file?What is DMZ Hosting? How do I reset the Gateway? What are the advanced features of the Gateway?What is a MAC Address? Is the Gateway cross-platform compatible?Introduction EnvironmentBuild Filter Lists How to Establish a Secure IPSec TunnelCreate an IPSec Policy Filter List 1 win-RouterFilter List 2 Router -win Figure B-4 IP Filter LIstFigure B-7 IP Filter List Configure Individual Tunnel Rules Tunnel 1 win-RouterFigure B-13 Authentication Methods Figure B-16 Tunnel Setting Tab Tunnel 2 Router-winFigure B-19 IP Filter List Tab Figure B-22 Preshared Key Assign New IPSec Policy Figure B-25 Connection TypeCreate a Tunnel Through the Web-Based Utility Figure B-28 VPN TabFigure C-1 IP Configuration Screen Windows 98 or Me InstructionsWindows 2000 or XP Instructions Figure C-3 MAC Address/Physical AddressFigure D-1 Upgrade Firmware Appendix D Upgrading FirmwareNetwork Neighborhood/My Network Places Appendix E Windows HelpShared Resources Appendix F Glossary Adsl Gateway with 4-Port Switch Adsl Gateway with 4-Port Switch Adsl Gateway with 4-Port Switch Appendix G Specifications StandardsAppendix H Warranty Information Limited WarrantyAppendix I Regulatory Information FCC StatementOutside of Europe Mail Address Appendix J Contact InformationEurope Mail Address