NETGEAR DG834 V3 manual How to Set Up VPN Tunnels in Special Circumstances

Page 110

Reference Manual for the ADSL Modem Router DG834 v3

How to Set Up VPN Tunnels in Special Circumstances

When the VPN Wizard and its VPNC defaults (see Table 6-2) are not appropriate for your special circumstances, use one of the following alternatives:

Auto Policy—for a typical automated Internet Key Exchange (IKE) setup, see “Using Auto Policy to Configure VPN Tunnels” on page 6-36. Auto Policy uses the IKE protocol to define the authentication scheme and automatically generate the encryption keys.

Manual Policy—for a Manual Keying setup in which you must specify each phase of the connection, see “Using Manual Policy to Configure VPN Tunnels” on page 6-46. Manual Policy does not use IKE. Rather, you manually enter all the authentication and key parameters. You have more control over the process, however the process is more complex and there are more opportunities for errors or configuration mismatches between your DG834 v3 and the corresponding VPN endpoint gateway or client workstation.

Using Auto Policy to Configure VPN Tunnels

You need to configure matching VPN settings on both VPN endpoints. The outbound VPN settings on one end must match to the inbound VPN settings on other end, and vice versa.

See “Example of Using Auto Policy” on page 6-41for an example of using Auto Policy.

Configuring VPN Network Connection Parameters

All VPN tunnels on the DG834 ADSL Modem Router require configuring several network parameters. This section describes those parameters and how to access them.

The most common configuration scenarios will use IKE to manage the authentication and encryption keys. The IKE protocol performs negotiations between the two VPN endpoints to automatically generate and update the required encryption parameters.

Click the VPN Policies link of the main menu, and then click the Add Auto Policy button to display the VPN - Auto Policy menu shown in Figure 6-41.

6-36

Virtual Private Networking (Advanced Feature)

v1.1, October 2006

Image 110
Contents Reference Manual for the Adsl Modem Router DG834 Trademarks European Union Statement of Compliance Bestätigung des Herstellers/Importeurs WProduct and Publication Details Change HistoryV1.1, October Contents Chapter Managing Your Network Chapter Virtual Private Networking Advanced Feature Appendix C Related Documents Chapter About This Manual Audience, Scope, Conventions, and FormatsPrinting a Chapter How to Print this ManualPrinting a Page in the Html View Printing the Full ManualChapter Introduction About the Modem RouterKey Features Powerful, True FirewallEasy Installation and Management Protocol SupportReference Manual for the Adsl Modem Router DG834 Auto Sensing and Auto Uplink LAN Ethernet Connections Content FilteringVirtual Private Networking VPN Trend Micro Home Network SecurityRouter-based Parental Controls What’s in the Box?Trend Micro Internet Security DG834 Router’s Rear Panel Connecting the Router to the Internet Reference Manual for the Adsl Modem Router DG834 Protecting Access to Your DG834 Adsl Modem Router How to Change the Built-In PasswordChanging the Administrator Login Timeout How to Block Keywords and Sites Configuring Basic Firewall ServicesBlocking Keywords, Sites, and Services Reference Manual for the Adsl Modem Router DG834 Firewall Rules Inbound Rules Port Forwarding Inbound Rule Example a Local Public Web Server Inbound Rule Example Allowing Videoconferencing Outbound Rules Service Blocking Considerations for Inbound RulesOutbound Rule Example Blocking Instant Messenger Order of Precedence for Rules Services How to Define ServicesSetting Times and Scheduling Firewall Services How to Set Your Time ZoneReference Manual for the Adsl Modem Router DG834 How to Schedule Firewall Services Trend Micro Home Network SecuritySecurity Service Settings Reference Manual for the Adsl Modem Router DG834 Parental Controls Settings To configure Parental ControlsTo configure Per-User mode To select Parental Controls ModeTo configure General mode Parental Controls Logs Blocking criteria for potentially offensive categoriesReference Manual for the Adsl Modem Router DG834 Reference Manual for the Adsl Modem Router DG834 Backing Up, Restoring, or Erasing Your Settings How to Back Up the Configuration to a FileUpgrading the Modem Router’s Firmware How to Restore the Configuration from a FileHow to Erase the Configuration How to Upgrade the Modem Router Firmware Network Management Information Viewing Modem Router Status and Usage StatisticsMenu 3.2 Modem Router Status Fields Router Statistics Fields Connection Status Fields for PPPoA Viewing Attached Devices Viewing, Selecting, and Saving Logged InformationReference Manual for the Adsl Modem Router DG834 Selecting What Information to Log Saving Log Files on a Server Activation and AdministrationExamples of Log Messages Dropped PacketsEnabling Security Event E-mail Notification Send alerts and logs via emailRunning Diagnostic Utilities and Rebooting the Modem Router Enabling Remote Management Configuring Remote Management Reference Manual for the Adsl Modem Router DG834 Chapter Advanced Configuration Configuring Advanced SecuritySetting Up a Default DMZ Server How to Configure a Default DMZ ServerDisable Port Scan and DOS Protection Connect Automatically, as RequiredMTU Size Configuring LAN IP SettingsRespond to Ping on Internet WAN Port Reference Manual for the Adsl Modem Router DG834 Dhcp Use Router as Dhcp serverReserved IP addresses How to Configure LAN TCP/IP Settings Configuring Dynamic DNSHow to Configure Dynamic DNS Using Static Routes Static Route ExampleHow to Configure Static Routes Reference Manual for the Adsl Modem Router DG834 Universal Plug and Play UPnP Reference Manual for the Adsl Modem Router DG834 Virtual Private Networking Advanced Feature Overview of VPN ConfigurationVPN Tunnel VPN Tunnel Configuration Worksheet Planning a VPNParameter Factory Default VPN Tunnel Configuration VPN Tunnel 28800 8 hours 3600 1 hourRemote VPN client single PC Summary screen below displays Hour Configuring the Netgear ProSafe VPN Client on the Remote PC Reference Manual for the Adsl Modem Router DG834 Reference Manual for the Adsl Modem Router DG834 Reference Manual for the Adsl Modem Router DG834 Reference Manual for the Adsl Modem Router DG834 Reference Manual for the Adsl Modem Router DG834 Reference Manual for the Adsl Modem Router DG834 Reference Manual for the Adsl Modem Router DG834 Reference Manual for the Adsl Modem Router DG834 VPN Tunnel 192.168.0.x Remote VPN Gateway Reference Manual for the Adsl Modem Router DG834 Summary screen below displays Hour Reference Manual for the Adsl Modem Router DG834 VPN Tunnel Control Activating a VPN TunnelUsing the VPN Status Page to Activate a VPN Tunnel Activate the VPN Tunnel by Pinging the Remote Endpoint Start Using a VPN Tunnel to Active It Verifying the Status of a VPN TunnelReference Manual for the Adsl Modem Router DG834 Deactivating a VPN Tunnel Using the VPN Status Page to Deactivate a VPN Tunnel Deleting a VPN Tunnel To delete a VPN tunnelReference Manual for the Adsl Modem Router DG834 Configuring VPN Network Connection Parameters How to Set Up VPN Tunnels in Special CircumstancesUsing Auto Policy to Configure VPN Tunnels Reference Manual for the Adsl Modem Router DG834 Reference Manual for the Adsl Modem Router DG834 Fully Qualified Domain Name-your domain name Reference Manual for the Adsl Modem Router DG834 VPN Tunnel IKE Pre-shared Key = Reference Manual for the Adsl Modem Router DG834 Reference Manual for the Adsl Modem Router DG834 Using Manual Policy to Configure VPN Tunnels Reference Manual for the Adsl Modem Router DG834 Reference Manual for the Adsl Modem Router DG834 Reference Manual for the Adsl Modem Router DG834 Reference Manual for the Adsl Modem Router DG834 Chapter Troubleshooting Basic FunctioningLAN or Internet Port LEDs Not On Power LED Not OnTest LED Never Turns On or Test LED Stays On Troubleshooting the Web Configuration Interface Internet LED Blinking Amber Troubleshooting the ISP ConnectionAdsl link Obtaining a WAN IP Address Internet LED OffTroubleshooting PPPoE or PPPoA Testing the LAN Path to Your Router Troubleshooting a TCP/IP Network Using the Ping UtilityTroubleshooting Internet Browsing Testing the Path from Your Computer to a Remote Device Restoring the Default Configuration and Password Using the Reset buttonProblems with Date and Time Appendix a Technical Specifications Reference Manual for the Adsl Modem Router DG834 Configuration Profile DG834 v3 to FVL328See How to Set Up a Gateway Step-ByClick VPN Policies under Advanced VPN to invoke this screen Figure B-2Reference Manual for the Adsl Modem Router DG834 Click IKE Policies under VPN to invoke this screen Click VPN Policies under VPN to invoke this screenDG834 v3 with Fqdn to FVL328 Figure B-4PC/Client-to-Gateway Step-By-Step Configuration Use of a Fully Qualified Domain Name FqdnCheck the box Use a Dynamic DNS Service Figure B-6Figure B-8 Figure B-9 Figure B-10 Figure B-11 Configuration Summary Telecommuter Example ExampleReference Manual for the Adsl Modem Router DG834 255.255.255.0 Single address Main Mode Fully Qualified Domain NameSubnet address 3600Click Apply when done to get the VPN Policies screen Figure B-15 Select the Connect using Secure Gateway Tunnel check box Select Secure in the Connection Security check boxFigure B-17 Figure B-18 Configure the VPN Client Authentication Proposal Figure B-19Authentication Method menu, select Pre-Shared key Figure B-20Check the Encapsulation Protocol ESP checkbox Figure B-21Check the VPN Connection Figure B-22Type ping -t 192.168.0.1, and then click OK Figure B-23Monitoring the VPN Tunnel Telecommuter Example Viewing the PC Client’s Connection Monitor and Log ViewerViewing the VPN Router’s VPN Status and Log Information Figure B-26Current VPN Tunnels SAs screen Reference Manual for the Adsl Modem Router DG834 Appendix C Related Documents Reference Manual for the Adsl Modem Router DG834
Related manuals
Manual 6 pages 24.7 Kb