10/100 8-Port VPN Router

Phase 1 SA Life Time: This field allows you to configure the length of time a VPN tunnel is active in Phase 1. The default value is 28,800 seconds.

Perfect Forward Secrecy: If PFS is enabled, IKE Phase 2 negotiation will generate a new key material for IP traffic encryption and authentication. If PFS is enabled, a hacker using brute force to break encryption keys is not able to obtain other or future IPSec keys.

Phase 2 DH Group: There are three groups of different prime key lengths. Group1 is 768 bits, Group2 is 1,024 bits and Group 5 is 1,536 bits. If network speed is preferred, select Group 1. If network security is preferred, select Group 5. You can choose the different Group with the Phase 1 DH Group you chose. If Perfect Forward Secrecy is disabled, there is no need to setup the Phase 2 DH Group since no new key generated, and the key of Phase 2 will be same with the key in Phase 1.

Phase 2 Encryption: Phase 2 is used to create one or more IPSec SAs, which are then used to key IPSec sessions. There are two methods of encryption, DES and 3DES. The Encryption method determines the length of the key used to encrypt/decrypt ESP packets. DES is 56-bit encryption and 3DES is 168-bit encryption. Both sides must use the same Encryption method. If users enable the AH Hash Algorithm in Advanced, then it is recommended to select Null to disable encrypting/decrypting ESP packets in Phase 2, but both sides of the tunnel must use the same setting.

Phase 2 Authentication: There are two methods of authentication, MD5 and SHA. The Authentication method determines a method to authenticate the ESP packets. Both sides must use the same Authentication method. MD5 is a one-way hashing algorithm that produces a 128-bit digest. If users enable the AH Hash Algorithm in Advanced, then it is recommended to select Null to disable authenticating ESP packets in Phase 2, but both sides of the tunnel must use the same setting.

Phase 2 SA Life Time: This field allows you to configure the length of time a VPN tunnel is active. The default value is 3,600 seconds.

Preshared Key: Use character and hexadecimal values in this field, e.g. “My_@123” or “4d795f40313233.” The max entry of this field is 30-digit. Both sides must use the same Pre-shared Key. It’s recommended to change Preshared keys regularly to maximize VPN security.

Click the Save Settings button to save the settings or click the Cancel Changes button to undo the changes.

Advanced

For most users, the settings on the VPN page should be satisfactory. This device provides an advanced IPSec setting page for some special users such as reviewers. Click the Advanced button to link you to that page. Advanced settings are only for IKE with Preshared Key mode of IPSec.

Chapter 5: Setting Up and Configuring the Router

46

VPN Tab - Gateway to Gateway

Page 55
Image 55
Linksys RV082 manual Advanced

RV082 specifications

The Linksys RV082 is a robust dual WAN VPN router that stands out in the market for small to medium-sized businesses seeking reliable network connectivity and security. Designed to meet the demands of a dynamic business environment, the RV082 offers a host of features that enhance both performance and reliability.

One of the primary attributes of the RV082 is its dual WAN capability. This feature allows businesses to connect to two different internet connections simultaneously, ensuring uninterrupted internet access. In case one connection fails, the router can automatically switch to the other, minimizing downtime and maintaining productivity. This failover capability is essential for businesses that rely heavily on internet connectivity.

The RV082 also boasts impressive VPN support, enabling secure communication between remote users and branch offices. With support for up to 50 simultaneous VPN connections, the router accommodates a growing workforce that may require access to the company’s network from remote locations. This is particularly beneficial for businesses with telecommuting employees or those that operate across multiple locations.

Security is a paramount concern for any business, and the RV082 addresses this with various built-in security features. It utilizes advanced firewall capabilities, including Stateful Packet Inspection (SPI) and Denial of Service (DoS) protection, safeguarding internal networks from external threats. The router also supports strong encryption protocols such as IPSec and PPTP, ensuring that sensitive data transmitted over the VPN remains secure.

Performance-wise, the RV082 includes eight switched LAN ports, allowing numerous devices to connect directly to the network without the need for additional hardware. This feature simplifies network management and helps keep connectivity organized. Furthermore, the router supports Quality of Service (QoS) prioritization, which allows businesses to allocate bandwidth effectively among different applications and users, promoting seamless performance even during high traffic periods.

The user-friendly web-based interface facilitates easy configuration and management, making it accessible for users with varying levels of technical expertise. Additionally, the RV082’s compact design ensures that it can fit into nearly any office environment without taking up too much space.

In summary, the Linksys RV082 is an excellent choice for businesses looking for a dependable and secure networking solution. With its dual WAN capabilities, extensive VPN support, robust security features, and user-friendly management tools, the RV082 successfully meets the challenging needs of modern business networking.