IPSec VPNs

Using IPSec Virtual Private Networking (VPN), you can securely join two or more widely separated private networks or computers together through the Internet. For example, if you are away from home, you can use a VPN to securely connect through your DFL-500 NPG to your home network. If you tele-commute, you can securely connect from your home network through your DFL-500 NPG to your employer's private network.

The secure IPSec VPN tunnel makes it appear to all VPN users that they are on physically connected networks. The VPN protects data passing through the tunnel by encrypting it to guarantee confidentiality. In addition, authentication guarantees that the data originated from the claimed sender and was not damaged or altered in transit.

IPSec is an Internet security standard for VPN and is supported by most VPN products. DFL-500 IPSec VPNs support three VPN configurations:

Auto Internet Key Exchange (IKE) key VPN

Manual Key Exchange VPN

Dialup VPN

Both AutoIKE key and manual key configurations are used to connect remote clients or VPN gateways that have static IP addresses to a DFL-500 VPN gateway. Dialup VPN uses an AutoIKE key configuration that allows clients or remote gateways with dynamic IP addresses to connect to the DFL-500 VPN gateway.

IPSec VPN is not supported in Transparent mode.

This chapter describes:

Interoperability with IPSec VPN products

Configuring AutoIKE key IPSec VPN

Configuring manual key IPSec VPN

Configuring dialup VPN

Configuring a VPN concentrator for hub and spoke VPN

Configuring IPSec redundancy

Adding a remote gateway

Adding an AutoIKE key VPN tunnel

Adding a manual key VPN tunnel

Adding a VPN concentrator

Adding an encrypt policy

Viewing VPN tunnel status

Viewing dialup VPN connection status

Testing a VPN

Interoperability with IPSec VPN products

Because the DFL-500 NPG supports the IPSec industry standard for VPN, you can configure a VPN between a DFL-500 NPG and any client or gateway/firewall that supports IPSec VPN.

DFL-500 IPSec VPNs support:

IPSec Internet Protocol Security standard

Automatic IKE based on pre-shared key

Manual Keys that can be fully customized

DFL-500 User Manual

48

 

Page 48
Image 48
D-Link DFL-500 user manual IPSec VPNs, Interoperability with IPSec VPN products