NETGEAR DG834GSP appendix Appendix B Netgear VPN Configuration, Configuration Profile

Page 1

Appendix B

NETGEAR VPN Configuration

DG834GSP to FVL328

This appendix is a case study on how to configure a secure IPSec VPN tunnel from a NETGEAR DG834GSP to a FVL328. This case study follows the VPN Consortium interoperability profile guidelines (found at http://www.vpnc.org/InteropProfiles/Interop-01.html).

Configuration Profile

The configuration in this document follows the addressing and configuration mechanics defined by the VPN Consortium. Gather all the necessary information before you begin the configuration process. Verify whether the firmware is up to date, all of the addresses that will be necessary, and all of the parameters that need to be set on both sides. Check that there are no firewall restrictions.

Table B-1.

Profile Summary

 

 

 

VPN Consortium Scenario:

Scenario 1

 

 

 

Type of VPN

 

LAN-to-LAN or Gateway-to-Gateway (not PC/Client-to-Gateway)

 

 

Security Scheme:

IKE with Preshared Secret/Key (not Certificate-based)

 

 

 

IP Addressing:

 

 

 

 

 

 

NETGEAR-Gateway A

Static IP address

 

 

 

 

NETGEAR-Gateway B

Static IP address

 

 

 

 

NETGEAR VPN Configuration

B-1

v1.0, June 2007

Image 1
Contents Configuration Profile Appendix B Netgear VPN ConfigurationStep-By See How to Set Up a Gateway-toClick VPN Policies under Advanced VPN to invoke this screen Reference Manual for the Adsl Modem Wireless Router DG834GSP Click IKE Policies under VPN to invoke this screen DG834GSP with Fqdn to FVL328 PC/Client-to-Gateway Use of a Fully Qualified Domain Name Fqdn Step-By-Step ConfigurationFigure B-6 Check the box Use a Dynamic DNS ServiceFigure B-8 Figure B-9 Device LAN IP Address LAN Subnet Mask Figure B-11 Configuration Summary Telecommuter Example Reference Manual for the Adsl Modem Wireless Router DG834GSP Subnet address Main Mode Fully Qualified Domain Name255.255.255.0 Single address 3600Click Apply when done to get the VPN Policies screen Reference Manual for the Adsl Modem Wireless Router DG834GSP Figure B-15 Figure B-16 Select the Connect using Secure Gateway Tunnel check boxFigure B-17 Figure B-18 Figure B-19 Configure the VPN Client Authentication ProposalFigure B-20 Authentication Method menu, select Pre-Shared keyCheck the VPN Connection Check the Encapsulation Protocol ESP checkboxFigure B-22 Type ping -t 10.1.1.1, and then click OK Viewing the PC Client’s Connection Monitor and Log Viewer Monitoring the VPN Tunnel Telecommuter ExampleFigure B-26 Viewing the VPN Router’s VPN Status and Log InformationFigure B-27 Reference Manual for the Adsl Modem Wireless Router DG834GSP Reference Manual for the Adsl Modem Wireless Router DG834GSP