Cisco RVL200 User Guide

Cisco RVL200 - Small Business SSL/IPSec VPN Router Manual

Cisco RVL200 manual content summary:

  • Cisco RVL200 | User Guide - Page 1
    4-Port SSL/IPSec VPN Router Model: RVL200 USER GUIDE BUSINESS SERIES
  • Cisco RVL200 | User Guide - Page 2
    Cisco Systems, Inc. All rights reserved. Other brands and product names are trademarks or registered trademarks of their respective holders. 4-Port SSL/IPSec VPN Router Open Source This product may contain material licensed to you under the GNU General Public License or other open-source software
  • Cisco RVL200 | User Guide - Page 3
    Port Statistics 9 Network Setting Status 9 Firewall Setting Status 9 IPSec VPN Setting Status 9 SSL VPN Setting Status 9 Log Setting Status 9 Setup Tab > Network 10 Network 10 Setup > Password 12 Password 13 Setup > Time 13 Time 13 Setup > DMZ Host 13 DMZ Host 13 Setup Tab > Forwarding
  • Cisco RVL200 | User Guide - Page 4
    of Contents 4-Port SSL/IPSec VPN Router Setup > One-to-One NAT 16 One-to-One NAT 16 Setup > MAC Clone 16 MAC Clone 17 Setup > DDNS 17 DDNS 17 Setup > Advanced Routing 17 Advanced Routing 17 DHCP > Setup 18 Setup 19 DHCP > Status 20 Status 20 DHCP > Multiple VLANs 20 Multiple VLANs 20
  • Cisco RVL200 | User Guide - Page 5
    Table of Contents 4-Port SSL/IPSec VPN Router QoS > QoS Setup 28 QoS Setup 28 QoS > Queue Settings 29 Queue Settings 29 QoS > DSCP Settings 29 DSCP Settings 30 Firewall > General 30 General 30 Firewall > Access Rules 31 Access Rules 31 Add a New Access Rule 32 Firewall > Content Filter
  • Cisco RVL200 | User Guide - Page 6
    Table of Contents Wizard 49 Basic Setup 49 Access Rule Setup 51 Support 53 Manual 53 Linksys Web Site 53 Logout 53 Appendix A: Troubleshooting 55 Appendix B: Virtual Passage SSL VPN Client 56 Overview 56 Before You Begin (Windows OS 56 Internet Explorer 6.0 or Higher 56 Netscape
  • Cisco RVL200 | User Guide - Page 7
    Table of Contents 4-Port SSL/IPSec VPN Router Appendix H: Deployment in an Existing Network 80 Overview 80 LAN-to-LAN Connection 80 WAN-to-LAN Connection 81 Appendix I: Gateway-to-Gateway VPN Tunnel 82 Overview 82 Before You Begin 82 Configuration when the Remote Gateway Uses a Static IP
  • Cisco RVL200 | User Guide - Page 8
    Overview 96 RVL200 Configuration 96 Basic Instructions 96 Inter-VLAN Routing Option 97 Appendix N: Access of Multiple VLANs over a SSL VPN Tunnel 98 Overview 98 SSL VPN Connection 98 Static Route 98 Windows Operating System (OS 98 Mac OS X 98 Linux OS 98 Appendix O: Firmware Upgrade
  • Cisco RVL200 | User Guide - Page 9
    VPN Router to create a VPN tunnel using IPSec (Windows Vista uses a similar utility). Other Windows operating systems require additional, third-party VPN client software applications that support IPSec to be installed. For an SSL VPN tunnel, a computer can download the Virtual Passage SSL VPN client
  • Cisco RVL200 | User Guide - Page 10
    using SSL VPN client software) to VPN Router The following is an example of a computer-to-VPN Router VPN. In her hotel room, a traveling businesswoman connects to her Internet Service Provider (ISP). Her notebook computer has VPN client software that is configured with her office's VPN settings. She
  • Cisco RVL200 | User Guide - Page 11
    troubleshooting measures, press and hold in the Reset button for ten seconds. This will restore the factory defaults and clear all of the Router's custom settings. The Diag LED will flash quickly during a reset to factory defaults. You can also reset the Router to factory defaults using the System
  • Cisco RVL200 | User Guide - Page 12
    Linksys is not responsible for damages incurred by insecure wall-mounting hardware. Follow these instructions: 1. Determine where you want to mount the Router and slide the Router down until the screws fit snugly into the wall-mount slots. 64.4 mm 4-Port SSL/IPSec VPN Router Print this page
  • Cisco RVL200 | User Guide - Page 13
    the Router's Power port, and then plug the power adapter into an electrical outlet. Connect the Power 6. The Power LED on the front panel will light up as soon as the power adapter is connected properly. 7. Power on your computers and other network devices. 4-Port SSL/IPSec VPN Router Installation
  • Cisco RVL200 | User Guide - Page 14
    the Router's web-based utility to set it up and configure it. This chapter will explain all of the functions in this utility. These are the main tabs of the utility: System Summary, Setup, DHCP, System Management, Port Management, QoS, Firewall, IPSec VPN, SSL VPN, SNMP, Log, Wizard, Support, and
  • Cisco RVL200 | User Guide - Page 15
    the Router to delete all temporary Internet files, cookies, and browser history when the user logs out or closes the web browser window. (The ActiveX web cache control will be ignored by web browsers that do not support ActiveX.) Click the link to install the Web Cache Cleaner. 4-Port SSL/IPSec VPN
  • Cisco RVL200 | User Guide - Page 16
    Map. Then, click the desired tab. 4-Port SSL/IPSec VPN Router Site Map System Information Serial Number Displayed here is the serial number of the Router. Firmware version Displayed here is the current version number of the firmware installed on the Router. CPU Displayed here are the type and
  • Cisco RVL200 | User Guide - Page 17
    Setup tab. If the port is set to Obtain an IP automatically, two buttons, Release and Renew, will be available. Click Release to release the IP address, and 4-Port SSL/IPSec VPN Router click Renew to update the DHCP Lease Time or get a new IP address. If the WAN port is set to PPPoE or PPTP, two
  • Cisco RVL200 | User Guide - Page 18
    to see if your broadband Internet service has been configured with a host and domain name. In most cases, you can leave these fields blank. 4-Port SSL/IPSec VPN Router LAN Setting The MAC Address of the Router is displayed. Device IP Address and Subnet Mask The default values are 192.168.1.1 for
  • Cisco RVL200 | User Guide - Page 19
    Enter the subnet mask of the Router. 4-Port SSL/IPSec VPN Router PPPoE User Name and Password Enter your account's User Name and Password. The maximum number of characters is 60. Connect on Demand If you select the Connect on Demand option, the connection will be disconnected after a specified
  • Cisco RVL200 | User Guide - Page 20
    Point to Point Tunneling Protocol (PPTP) is a service that applies to connections in Europe and Israel only. PPTP Specify WAN IP Address Enter the external IP address of the Router. Subnet Mask Enter the subnet mask of the Router. 4-Port SSL/IPSec VPN Router Default Gateway Address Enter the IP
  • Cisco RVL200 | User Guide - Page 21
    . Although Port Range Forwarding can only forward 10 ranges of ports maximum, DMZ hosting forwards all the ports to one computer at the same time. Setup > Time > Automatic Time Zone Select your time zone (the default Time Zone is Pacific Time). 4-Port SSL/IPSec VPN Router Setup > DMZ
  • Cisco RVL200 | User Guide - Page 22
    . The packets will simply be forwarded through the Router. Service Select the Service you want. 4-Port SSL/IPSec VPN Router Service Management Service Name Enter a name. Protocol Select the protocol it uses. Port Range Enter its range. Click Add to List. Click Save Settings to save your changes
  • Cisco RVL200 | User Guide - Page 23
    > UPnP Universal Plug and Play (UPnP) can be used to set up public services on your network. When the UPnP function is enabled, Windows XP can modify these entries via UPnP. Setup > UPnP 4-Port SSL/IPSec VPN Router Service Management Service Name Enter a name. Protocol Select the protocol it uses
  • Cisco RVL200 | User Guide - Page 24
    Configuration UPnP Forwarding Table List Click Refresh to update the on-screen information. Click Close to exit this screen and return to the UPnP screen. On the UPnP screen, click Save Settings to save your changes, or click Cancel Changes to undo them. Setup > One-to-One NAT One-to-One NAT
  • Cisco RVL200 | User Guide - Page 25
    > Advanced Routing The Advanced Routing screen allows you to configure the dynamic and static routing settings. Setup > DDNS DDNS DDNS Service To enable DDNS, select DynDNS.org. Otherwise, select Disable. 4-Port SSL/IPSec VPN Router Setup > Advanced Routing Advanced Routing Dynamic Routing The
  • Cisco RVL200 | User Guide - Page 26
    use static routing, the Router's DHCP settings must be disabled. Then add routing entries to the Static Routing table. These entries tell the Router where to send all incoming packets. All of your network routers should direct the default route entry to the 4-Port SSL/IPSec VPN Router. NOTE: Static
  • Cisco RVL200 | User Guide - Page 27
    . The Unknown MAC Address List appears. 4-Port SSL/IPSec VPN Router Unknown MAC Address List To add an IP address and MAC address set to the Static IP list, select Enable, and then click Apply. To add all IP addresses and MAC addresses to the Static IP list, click Select All. To update the on
  • Cisco RVL200 | User Guide - Page 28
    Chapter 4 Advanced Configuration NOTE: To support NetBIOS for DHCP and Virtual Passage clients, the Router uses two methods. (Virtual Passage is an ActiveX-based VPN client that provides full network connectivity for Windows users. It allows remote access to the Router's network through a secure
  • Cisco RVL200 | User Guide - Page 29
    VLAN4. Click Save Settings to save your changes, or click Cancel Changes to undo them. System Management > Diagnostic The Router has two built-in tools, DNS Name Lookup and Ping, which are used for troubleshooting network problems. 4-Port SSL/IPSec VPN Router System Management > Diagnostic > DNS
  • Cisco RVL200 | User Guide - Page 30
    the Router to its factory default settings. After clicking the button, a confirmation screen appears. Click OK to continue. System Management > Firmware Upgrade You can use this feature to upgrade the Router's firmware to the latest version. 4-Port SSL/IPSec VPN Router System Management > Firmware
  • Cisco RVL200 | User Guide - Page 31
    be 4-Port SSL/IPSec VPN Router System Management > Port Mirroring Port Mirroring Enable Port Mirroring Select this option to use Port Mirroring. Source Port Select the port whose traffic will be captured by a target (mirror) port. The Source Port can be any LAN port or the WAN port. Target Port
  • Cisco RVL200 | User Guide - Page 32
    broadcast packets that need to sent to the IGMP clients. The default is 248 seconds. Click Save Settings to save your changes, or click Cancel Changes to undo them. Port Management > Port Setup Configure the connection settings for each local port, such as priority, speed, and duplex. You can also
  • Cisco RVL200 | User Guide - Page 33
    . You can create a single VLAN or create multiple VLANs by range. VLAN ID Enter a VLAN ID number from 2 to 4094. (The default VLAN ID 1 is assigned to untagged frames received 4-Port SSL/IPSec VPN Router Port Management > Port Setting Port Setting Port ID The Router's LAN ports are numbered 1 to
  • Cisco RVL200 | User Guide - Page 34
    listed in this column. Port VLAN Summary The Tagged (T) or UnTagged (U) status for each port is displayed in this column. Click Save Settings to save your changes, or click Cancel Changes to undo them. 4-Port SSL/IPSec VPN Router QoS > Bandwidth Management Quality of Service (QoS) features let you
  • Cisco RVL200 | User Guide - Page 35
    Enable Select Enable to use this Rate Control rule. 4-Port SSL/IPSec VPN Router QoS > Bandwidth Management > Priority Service Select the Service you want. If the Service you need is not listed in the menu, click Service Management to add the new service. The Service Management screen appears. 27
  • Cisco RVL200 | User Guide - Page 36
    rules. The Summary screen appears. 4-Port SSL/IPSec VPN Router Summary (Priority Selected) To change a rule, click Edit. To update the list, click Refresh. To return to the Bandwidth Management screen, click Close. On the Bandwidth Management screen, click Save Settings to save your changes, or
  • Cisco RVL200 | User Guide - Page 37
    settings to their factory defaults, click Restore Defaults. The defaults are 2, 1, 1, 2, 3, 4, and 4 for the Priority values, 0 to 7. Click Save Settings to save your changes, or click Cancel Changes to undo them. 4-Port SSL/IPSec VPN Router QoS > Queue Settings You can set the Router to service
  • Cisco RVL200 | User Guide - Page 38
    Router through a WAN connection, first change the password on the Setup > Password screen (this prevents any user from accessing the Router or using SSL with the default password). Then select Enable for the Remote Management/SSL VPN setting. NOTE: SSL VPN has higher priority than Port Forwarding
  • Cisco RVL200 | User Guide - Page 39
    to decide whether or not it is allowed to pass through the Router's firewall. Access Rules look specifically at a data transmission's source IP address, destination IP address, and IP protocol 4-Port SSL/IPSec VPN Router type, and you can apply each access rule according to a different schedule
  • Cisco RVL200 | User Guide - Page 40
    in the menu, click Service Management to add the new service. The Service Management screen appears. 4-Port SSL/IPSec VPN Router Service Management Service Name Enter a name. Protocol Select the protocol it uses. Port Range Enter its range. Click Add to List. Click Save Settings to save your
  • Cisco RVL200 | User Guide - Page 41
    Filter Content Filter IP/MAC Group You can apply the content filter to specific groups of computers. You can have up to 10 groups, and each group can have up to 50 computers. To create a group of computers, click Add Group. The Add Group screen appears. 4-Port SSL/IPSec VPN Router Add Group 33
  • Cisco RVL200 | User Guide - Page 42
    the list, select the entry, and click the Delete selected entry. Click Save Settings to save your changes, or click Cancel Changes to undo them. Click Exit to return to the Content Filter screen. 4-Port SSL/IPSec VPN Router To delete a group, select it and click Delete selected group on the Content
  • Cisco RVL200 | User Guide - Page 43
    will be updated in the Status column. If the tunnel is connected, a Disconnect button will be available so you can end the connection. Config. Click Edit to open a new screen where you can change the tunnel's settings. Refer to the "Gateway to 4-Port SSL/IPSec VPN Router IPSec VPN > Gateway to
  • Cisco RVL200 | User Guide - Page 44
    address Enter the e-mail address for authentication. 4-Port SSL/IPSec VPN Router Local Security Group Type Select the local LAN user(s) behind the Router that can use this VPN tunnel. Select the type you want to use: IP, Subnet, or IP Range. Follow the instructions for the type you want to use
  • Cisco RVL200 | User Guide - Page 45
    domain name as an ID (it cannot be a real domain name on the Internet). 4-Port SSL/IPSec VPN Router IP + E-mail Addr.(USER FQDN) Authentication IP address Select this option if you know the static IP address of the remote VPN device at the other end of the tunnel, and then enter the IP address. IP
  • Cisco RVL200 | User Guide - Page 46
    sure both ends of the VPN tunnel use the same authentication method. 4-Port SSL/IPSec VPN Router Phase 1 SA Life Time Configure the length of time a VPN tunnel is active in Phase 1. The default value is 28800 seconds. Perfect Forward Secrecy If the Perfect Forward Secrecy (PFS) feature is enabled
  • Cisco RVL200 | User Guide - Page 47
    , then the rest of 4-Port SSL/IPSec VPN Router the Authentication Key will be automatically completed with zeroes until it has 40 hexadecimal values. Make sure both ends of the VPN tunnel use the same Authentication Key. Advanced For most users, the settings on the VPN page should suffice; however
  • Cisco RVL200 | User Guide - Page 48
    Any administrative user can click the Trash Can icon to terminate a user session and log the user out. SSL VPN > Certificate Management Manage the certificate used for securing communications between the Router and VPN clients. 4-Port SSL/IPSec VPN Router SSL VPN > Certificate Management 40
  • Cisco RVL200 | User Guide - Page 49
    Edit Group Authentication Type Select the type you want to use: Local User Database, RADIUS - PAP, RADIUS - CHAP, RADIUS - MSCHAP, RADIUS - MSCHAPV2, NT Domain, Active Directory, 4-Port SSL/IPSec VPN Router Active Directory Server Address Enter the IP address or domain name of the Active
  • Cisco RVL200 | User Guide - Page 50
    Define the IP address range for incoming Virtual Passage clients and establish an SSL VPN tunnel by Virtual Passage. Virtual Passage is a software application that enables remote users to securely connect to a remote network, as if they were on the local network. 4-Port SSL/IPSec VPN Router 42
  • Cisco RVL200 | User Guide - Page 51
    how to install and use the Virtual Passage Client, refer to "Appendix B: Virtual Passage SSL VPN Client.") SSL VPN Portal 4-Port SSL/IPSec VPN Router SNMP > Global Parameters Global Parameters Enable SNMP To use SNMP, select this option. SNMPv3 Local Engine ID If you want to manually generate the
  • Cisco RVL200 | User Guide - Page 52
    ) DefaultSuper This displays the default SNMP view for administrator views. It does not block any subtree OID. New View Name Enter a new view name. SubTree ID Tree Linksys supports user-defined OIDs. These are some of the common MIB OIDs: 4-Port SSL/IPSec VPN Router • IP-MB 1.3.1.2.1.48 • IF
  • Cisco RVL200 | User Guide - Page 53
    the user. 4-Port SSL/IPSec VPN Router SNMP > Communities Communities SNMP Management Station Select the top option to specify an IP address. Then enter the IP address of this community name. Select All to specify all IP addresses for all management stations. Community String Enter the password
  • Cisco RVL200 | User Guide - Page 54
    , select it and click Delete. Click Save Settings to save your changes, or click Cancel Changes to undo them. SNMP > Notification Recipient Define the types and frequencies of the notifications. 4-Port SSL/IPSec VPN Router SNMP > Notification Recipient Notification Recipient Recipient IP Enter
  • Cisco RVL200 | User Guide - Page 55
    them. Log > System Log Configure the Router's log settings, so you can specify how you want its activity logs handled. Log > System Log 4-Port SSL/IPSec VPN Router System Log Syslog Syslog is a standard protocol used to capture information about network activity. The Router supports this protocol
  • Cisco RVL200 | User Guide - Page 56
    System Log displays a list of cold and warm starts, web login successes and failures, and packet filtering policies. The Firewall Log displays all activities regarding the Router's firewall. The IPSec Log shows information about IPSec VPN tunnel activity. The SSL Log shows information about SSL VPN
  • Cisco RVL200 | User Guide - Page 57
    , or PPPoE. Click Next to continue. Click Previous if you want to return to the previous screen. Click Exit if you want to exit the Setup Wizard. Wizard Basic Setup 1. Click Launch Now to run the Basic Setup Wizard. WAN Connection Type 4-Port SSL/IPSec VPN Router 49
  • Cisco RVL200 | User Guide - Page 58
    PPPoE Complete the User Name and Password fields with the information provided by your ISP. Click Next to continue. Click Previous if you want to return to the previous screen. Click Exit if you want to exit the Setup Wizard. Static IP 4-Port SSL/IPSec VPN Router PPPoE Select Connect on demand or
  • Cisco RVL200 | User Guide - Page 59
    Access Rule. Click Next to continue. Click Previous if you want to return to the previous screen. Click Exit if you want to exit the Setup Wizard. Save Settings Access Rule Setup 1. Click Launch Now to run the Access Rule Setup Wizard. 4-Port SSL/IPSec VPN Router Select the Action 51
  • Cisco RVL200 | User Guide - Page 60
    screen. Click Exit if you want to exit the Setup Wizard. Select the Service 5. For this service, you can select whether or not you want the Router to keep a log tracking this type of activity you want to exit the Setup Wizard. Select the Log 4-Port SSL/IPSec VPN Router Select the Destination 52
  • Cisco RVL200 | User Guide - Page 61
    User Guide, follow these instructions: 1. Click the On Line Manual. 2. The Support page of the Linksys website appears. Click the Support tab and then Downloads. 3. Select RVL200 - 4-Port SSL/IPSec VPN Router from the drop-down menu. 4. Click Downloads for this Product. 5. Click User Guide. Linksys
  • Cisco RVL200 | User Guide - Page 62
    screen appears. It will ask you to confirm that you want to delete the History Item for the Router. (The Web Cache Cleaner will prompt you to delete all temporary Internet files, cookies, and browser history during logout.) Click Yes. Logout Advanced Configuration 4-Port SSL/IPSec VPN Router 54
  • Cisco RVL200 | User Guide - Page 63
    cable modem in order to use the Router. Connect your cable connection to the cable modem, insert the setup CD into your computer, and then follow the on‑screen instructions. WEB: If your questions are not addressed here, refer to the Linksys website, www.linksys.com. 4-Port SSL/IPSec VPN Router 55
  • Cisco RVL200 | User Guide - Page 64
    Client for Windows, Mac, and Linux Operating System (OS) users. Before You Begin (Windows OS) The Router's web-based utility and SSL VPN Portal support Internet Explorer 6.0 (or higher) and Netscape Communicator 8.0 (or higher) running in a Windows environment. To configure the SSL VPN software
  • Cisco RVL200 | User Guide - Page 65
    Security. 4-Port SSL/IPSec VPN Router Netscape Communicator > Options > Advanced > Security 15. Click OK. Make the SSL VPN Portal a Trusted Site (Windows OS) Most web browsers support multiple security zones with different permission levels. Trusted sites have a lower security setting that will
  • Cisco RVL200 | User Guide - Page 66
    cookies, and browser history when the user logs out or closes the web browser window. (The ActiveX web cache control will be ignored by web browsers that do not support ActiveX.) Click the link to install the Web Cache Cleaner. Click to Install the Web Cache Cleaner 4-Port SSL/IPSec VPN Router 58
  • Cisco RVL200 | User Guide - Page 67
    OS) When you log out, you will see a Warning screen. It will ask you to confirm that you want to delete the History Item for the Router. (The Web Cache Cleaner will prompt you to delete all temporary Internet files, cookies, and browser history during logout.) Click Yes. 4-Port SSL/IPSec VPN Router
  • Cisco RVL200 | User Guide - Page 68
    Click OK. 5. Restart your computer. 6. Establish the SSL VPN connection again. NOTE: After you end the SSL VPN connection, Linksys recommends that you enable the User Account Control (UAC) feature. Login for the SSL VPN Portal (Mac OS X) Follow these instructions to log in: 1. Enter the IP address
  • Cisco RVL200 | User Guide - Page 69
    Word "Here" 2. Enter your password for OS X. To uninstall the Virtual Passage Client, click OK. Enter Your Password 3. After the software is removed, you will be notified. Click OK. SSL VPN Tunnel Established To end the SSL VPN connection, click Disconnect. 4-Port SSL/IPSec VPN Router Click OK 61
  • Cisco RVL200 | User Guide - Page 70
    the web-based utility. If your user type is User, then you can use Virtual Passage only. Installation of the Virtual Passage Client (Linux OS) The first time you create an SSL VPN tunnel, you have to install the Virtual Passage Client on your computer. 4-Port SSL/IPSec VPN Router Click Yes 62
  • Cisco RVL200 | User Guide - Page 71
    the SSL VPN connection, click Disconnect. Removal of the Virtual Passage Client (Linux OS) To remove the Virtual Passage Client, follow these instructions: 1. In the sentence, "Click here to Uninstall VPN Tunnel client", click the word here. Click the Word "Here" 4-Port SSL/IPSec VPN Router 63
  • Cisco RVL200 | User Guide - Page 72
    RTP port range in the Port Range fields. These are required for both incoming and outgoing traffic. For example, you can set the Port Range to 10000 to 25000 to make sure that all active ports are covered. 12. Click Add to List. 13. Click Apply to save your changes. 4-Port SSL/IPSec VPN Router 64
  • Cisco RVL200 | User Guide - Page 73
    this rule. 4-Port SSL/IPSec VPN Router 14. After you have set up the rule, click Add to list. 15. Set up a rule for Vonage 2. Select Vonage 2 from the Service drop-down menu. 16. Enter the IP address or range you need to control. To include all internal IP addresses, keep the default, 0. 17. From
  • Cisco RVL200 | User Guide - Page 74
    Windows Server 2000 and 2003 support the Active Directory server feature. To configure an Active Directory server: 1. Click the Start button of your Windows computer. 2. Click Settings Configure Your Server Wizard 6. Click Next. Summary of Selections Preliminary Steps 4-Port SSL/IPSec VPN Router
  • Cisco RVL200 | User Guide - Page 75
    11. Select Domain controller for a new domain, and then click Next. Welcome to the Active Directory Installation Wizard 10. Click Next. Domain Controller Type 12. Select Domain in a new forest, and then click Next. Operating System Compatibility Create New Domain 4-Port SSL/IPSec VPN Router 67
  • Cisco RVL200 | User Guide - Page 76
    NetBIOS name, and then click Next. Database and Log Folders 16. Enter a location for the SYSVOL folder, and then click Next. NetBIOS Domain Name Shared System Volume 4-Port SSL/IPSec VPN Router 68
  • Cisco RVL200 | User Guide - Page 77
    . Select Permissions compatible only with Windows 2000 or Windows Server 2003 operating systems. Then click Next. Directory Services Restore Mode Administrator Password 20. Click Next. Permissions 4-Port SSL/IPSec VPN Router Summary 21. The wizard configures Active Directory automatically, and it
  • Cisco RVL200 | User Guide - Page 78
    authentication. If you are using a Windows NT 4.0 server, then your server only supports NT Domain authentication. Typically, Windows 2000 and 2003 servers are also configured for NT Domain authentication to support legacy Windows clients. Active Directory Server 4-Port SSL/IPSec VPN Router 70
  • Cisco RVL200 | User Guide - Page 79
    login name, and select the appropriate domain from the drop-down menu. Then click Next. New Object > User > Name 8. Enter the user password, and enter it again in the Confirm password field. Then click Next. Active Directory Users and Computers New Object > User > Password 4-Port SSL/IPSec VPN
  • Cisco RVL200 | User Guide - Page 80
    Appendix E 9. Click Finish to create the new user. User for the Active Directory Server New Object > User > Summary 4-Port SSL/IPSec VPN Router 72
  • Cisco RVL200 | User Guide - Page 81
    button of your Windows computer. 6. Click Settings. 7. Click Control Panel. 8. Double-click Administrative Tools. 9. Click Internet Authentication Service. 10. Right-click Remote Access Policies, and click New Remote Access Policy. 4-Port SSL/IPSec VPN Router Internet Authentication Service 73
  • Cisco RVL200 | User Guide - Page 82
    to the New Remote Access Policy Wizard 12. Select Set up a custom policy, and enter a policy name. Then click Next. Policy Conditions 14. Select Client-IP-Address, and then click Add. Policy Configuration Method 4-Port SSL/IPSec VPN Router Select Attribute 15. Enter an IP address, and then
  • Cisco RVL200 | User Guide - Page 83
    Appendix F Internet Authentication Service (IAS) Server 16. Make sure a policy has been added, and then click Next Encryption Authentication version 2 and Microsoft Encrypted Authentication. Select Unencrypted authentication. Click Apply. Permissions 4-Port SSL/IPSec VPN Router Authentication 75
  • Cisco RVL200 | User Guide - Page 84
    click New Connection Request Policy. Completing the New Remote Access Policy Wizard 22. Make sure the policy has been added. 23. Click the Start button. 24. Click Settings. 25. Click Control Panel. 26. Double-click Administrative Tools. 4-Port SSL/IPSec VPN Router Connection Request Policies 76
  • Cisco RVL200 | User Guide - Page 85
    Service (IAS) Server 31. To add a policy, click Add. Welcome to the New Connection Request Policy Wizard 30. Select A custom policy, and enter a policy name. Then click Next. Policy Conditions 32. Select Client-IP-Address, and then click Add. Policy Configuration Method 4-Port SSL/IPSec VPN
  • Cisco RVL200 | User Guide - Page 86
    Appendix F Internet Authentication Service (IAS) Server 34. Make sure a policy has been added, and then click Next. . Click Edit Profile. 37. Click Finish. Authentication Request Processing Method Completing the New Connection Request Processing Policy Wizard 4-Port SSL/IPSec VPN Router 78
  • Cisco RVL200 | User Guide - Page 87
    Name defined in the configuration file of your LDAP server. NOTE: User names and passwords should be defined in the configuration file of your LDAP server. For more information, refer to the documentation for your LDAP server. LDAP Settings 7. Click Save Settings. 4-Port SSL/IPSec VPN Router 79
  • Cisco RVL200 | User Guide - Page 88
    4-Port SSL/IPSec VPN Router (model number: RVL200), so that the SSL clients can access the existing network resources. The two configuration examples are for LANWAN and LANLAN, between a 4-Port SSL/IPSec VPN Router and an existing VPN Router, such as the Linksys 10/100 16-, 8-, or 4-Port VPN
  • Cisco RVL200 | User Guide - Page 89
    RV082 LAN To connect the RVL200 WAN to the RV082 LAN: 1. Physically connect the Internet port on the RVL200 to a LAN port on the RV082. 2. Configure the Virtual Passage IP so it is in the network range of the RV082 LAN side. After an SSL VPN client establishes its connection, the client can access
  • Cisco RVL200 | User Guide - Page 90
    Two Windows desktop computers (each computer will be connected to a VPN Router) • Two VPN Routers (4-Port SSL/IPSec VPN Router, model number: RVL200, and 10/100 8-Port VPN Router, model number: RV082) that are both connected to the Internet Any VPN Router can be deployed, such as the Linksys 10/100
  • Cisco RVL200 | User Guide - Page 91
    Otherwise, click Save Settings. Configuration of PC 1 and PC 2 Verify that PC 1 and PC 2 can ping each other (refer to Windows Help for more information). If the computers can ping each other, then you know the VPN tunnel is configured correctly. RV082 VPN Settings 4-Port SSL/IPSec VPN Router 83
  • Cisco RVL200 | User Guide - Page 92
    will be automatically detected. For the Local Security Group Type, select Subnet. Enter the RVL200's local network settings in the IP Address and Subnet Mask fields. 4-Port SSL/IPSec VPN Router RVL200 IPSec VPN Settings 8. For the Remote Security Gateway Type, select IP by DNS Resolved. Enter the
  • Cisco RVL200 | User Guide - Page 93
    ping each other (refer to Windows Help for more information). If the computers can ping each other, then you know the VPN tunnel is configured correctly. 4-Port SSL/IPSec VPN Router RV082 Dynamic IP: B.B.B.B with Domain Name: www.abc.com LAN: 192.168.1.1 RVL200 Dynamic IP: A.A.A.A with Domain Name
  • Cisco RVL200 | User Guide - Page 94
    of the RV082. (Refer to the User Guide of the RV082 for details.) 3. Click the IPSec VPN tab. 4. Click the Gateway to Gateway tab. 5. Enter a name in the Tunnel Name field. 6. For the VPN Tunnel setting, select Enable. 4-Port SSL/IPSec VPN Router RV082 IPSec Setup Settings 12. If you need more
  • Cisco RVL200 | User Guide - Page 95
    Internet • Two 10/100 4-Port VPN Routers (model number: RV042), one of which is connected to the Internet 4-Port SSL/IPSec VPN Router Configuration of Scenario 1 In this scenario, Router A is the RVL200 Initiator, while Router B is the RVL200 Responder. WAN: 192.168.99.11 NAT 2 - RV042 LAN: 192
  • Cisco RVL200 | User Guide - Page 96
    Security Group Type, select Subnet. Enter Router B's local network settings in the IP Address and Subnet Mask fields. 4-Port SSL/IPSec VPN Router Router B's IPSec VPN Settings 8. For the Remote Security Gateway Type, select IP Only. Enter the WAN IP address of NAT 2 - RV042 in the IP Address field
  • Cisco RVL200 | User Guide - Page 97
    .168.111.11 Refer to the documentation of the 10/100 4-Port VPN Router (model number: RV042) for more details about one-to-one NAT rules. One-to-One NAT Rule on NAT 1 - RV042 192.168.111.11 => 192.168.11.101 Configuration of Router B Set the Remote Security Gateway to IP address: 192.168.99.1, which
  • Cisco RVL200 | User Guide - Page 98
    . Otherwise, click Save Settings. Router A's IPSec VPN Settings NOTE: This configuration is the same as the configuration of Router A in scenario 1. 8. For the Remote Security Gateway Type, select IP address. Enter Router B's WAN IP address in the IP Address field. 4-Port SSL/IPSec VPN Router 90
  • Cisco RVL200 | User Guide - Page 99
    Subnets Overview The 4-Port SSL/IPSec VPN Router (model number: RVL200) can support multiple subnets. The configuration example shows an RVL200 deploying two routers. Any router can be deployed; however, this example uses the Linksys 10/100 4-Port VPN Router (model number: RV042). RVL200 LAN IP: 192
  • Cisco RVL200 | User Guide - Page 100
    Save Settings. 15. Click the More tab. 16. Click the Advanced Routing tab. 4-Port SSL/IPSec VPN Router Setup > Advanced Routing 17. In the Static Routing section, enter 192.168.7.0 in the Destination IP field. 18. Enter 255.255.255.0 in the Subnet Mask field. 19. Enter 192.168.1.2 in the Default
  • Cisco RVL200 | User Guide - Page 101
    select Disable. 16. Click Save Settings. RV042 #2 Configuration 1. Launch the web browser for a computer connected one of the Ethernet ports of the RV042 #2. 2. Access the web-based utility of the RV042 #2. (Refer to the User Guide of the RV042 for details.) 3. Click the Setup tab. 4. Click the More
  • Cisco RVL200 | User Guide - Page 102
    Multiple VLANs with Computers Overview The 4-Port SSL/IPSec VPN Router (model number: RVL200) can support multiple Virtual Local Area Networks (VLANs). The configuration example shows the Router deploying a Layer 2 managed switch, which deploys three VLANs. This example uses the Linksys 48-Port 10
  • Cisco RVL200 | User Guide - Page 103
    Enter a description in the Description field. 18. Select Tagged in the Port 4 column. 19. Select 3 from the VLAN ID drop-down menu. 20. Enter a description in the Description field. 21. Select Tagged in the Port 4 column. 22. Select 4 from the VLAN ID drop-down menu. 4-Port SSL/IPSec VPN Router 95
  • Cisco RVL200 | User Guide - Page 104
    4-Port VPN Router (model number: RV042). This example also uses the Linksys 48-Port 10/100/1000 + 4­‑Port miniGBIC Switch with WebView (model number: SRW2048); however, any of the Linksys SRW switches with 802.1Q VLAN support can also be used. RVL200 Configuration Basic Instructions 1. To configure
  • Cisco RVL200 | User Guide - Page 105
    Advanced Configuration" for details.) 2. Click the DHCP tab. 3. Click the Inter-VLAN Routing tab. 4. Select the VLANs that can route packets to each other: VLAN1, VLAN2, VLAN3, and/or VLAN4. Multiple VLANs and Subnets DHCP > Inter-VLAN Routing 5. Click Save Settings. 4-Port SSL/IPSec VPN Router
  • Cisco RVL200 | User Guide - Page 106
    a static route to access a member of a different VLAN. Follow the instructions for the operating system of PC 2. Windows Operating System (OS) 1. Click Start. 2. Select Programs > Accessories > Command Prompt. 4-Port SSL/IPSec VPN Router 3. At the cmd prompt, enter the following: route add
  • Cisco RVL200 | User Guide - Page 107
    Bar 2. A login screen prompts you for your User Name and Password. Enter admin in the User Name field, and enter admin in the Password field. (You can change the Password on the Setup > Password screen.) Then click Login. Internet Explorer > Tools > Tools 4-Port SSL/IPSec VPN Router Login Screen
  • Cisco RVL200 | User Guide - Page 108
    Upgrade 4. The Support page of the Linksys website appears. Select 4-Port SSL/IPSec VPN Router from the dropdown menu, and choose the firmware from the available options. 5. After downloading the firmware file, extract it on your computer. 6. In the Firmware Upgrade instructions, click the Browse
  • Cisco RVL200 | User Guide - Page 109
    the Router. 6. Remove the old CR2032 lithium battery. 7. Insert a new CR2032 lithium battery or its equivalent type. 8. Replace the top case of the Router. 9. Replace the four screws on the bottom panel of the Router. 10. Replace the four rubber feet. 4-Port SSL/IPSec VPN Router Battery Replacement
  • Cisco RVL200 | User Guide - Page 110
    , Username/Password QoS Layer 2 Prioritization Based on DSCP, 802.1p, or Physical Ports 4-Port SSL/IPSec VPN Router Bandwidth Management of WAN (Upstream and Downstream) based on Services (TCP/UDP Ports) Network VLAN Support Supports 16 802.1Q VLANs DHCP DHCP Server, DHCP Client DNS Relay
  • Cisco RVL200 | User Guide - Page 111
    the product, software or any equipment, system or network on which the product or software is used will be free of vulnerability to intrusion or attack. The product may include or be bundled with third party software or 4-Port SSL/IPSec VPN Router service offerings. This limited warranty shall not
  • Cisco RVL200 | User Guide - Page 112
    support services) can be found at: www.linksys.com/support. This limited warranty is governed by the laws of the jurisdiction in which the Product was purchased by you. Please direct all inquiries to: Linksys, P.O. Box 18558, Irvine, CA 92623. Warranty Information 4-Port SSL/IPSec VPN Router
  • Cisco RVL200 | User Guide - Page 113
    installation. If this equipment does cause harmful interference to radio or television reception, which is found by turning the equipment off and on, the user is encouraged to try to correct the interference by one risquent d'entraîner un fonctionnement indésirable. 4-Port SSL/IPSec VPN Router 105
  • Cisco RVL200 | User Guide - Page 114
    EU Directive 2002/96/EC on Waste Electric and Electronic Equipment (WEEE) This document contains important information for users with regards to the proper disposal and recycling of Linksys contact your local authorities, waste disposal service, or the shop where you Port SSL/IPSec VPN Router 106
  • Cisco RVL200 | User Guide - Page 115
    2002/96/EC Français (French) - Informations environnementales pour les clients de l'Union européenne La directive européenne 2002/96/CE veuillez prendre contact avec les pouvoirs publics locaux, le service de traitement des déchets, ou l'endroit où vous ādājumu. 4-Port SSL/IPSec VPN Router 107
  • Cisco RVL200 | User Guide - Page 116
    waar u het product hebt aangeschaft. Norsk (Norwegian) - Miljøinformasjon for kunder i EU EU-direktiv 2002/96/EF krever at utstyr med følgende symbol avbildet på produktet og/ do lokalnych władz, służb oczyszczania miasta lub sklepu, w którym produkt został nabyty. 4-Port SSL/IPSec VPN Router 108
  • Cisco RVL200 | User Guide - Page 117
    clientes da União Europeia A Directiva Europeia 2002/96/CE exige que o equipamento que exibe este símbolo no produto e/ou na sua embalagem não seja eliminado junto com os äristöä koskevia tietoja EUalueen asiakkaille EU-direktiivi 2002/96/EY edellyttää, linksys.com 4-Port SSL/IPSec VPN Router 109
  • Cisco RVL200 | User Guide - Page 118
    .com Advice Line 800-546-5797 (LINKSYS) Support 800-326-7114 RMA (Return Merchandise Authorization) http://www.linksys.com/warranty NOTE: Details on warranty and RMA issues can be found in the Warranty section of this Guide. Contact Information 4-Port SSL/IPSec VPN Router 7112610C-JL 110
  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118

USER GUIDE
BUSINESS SERIES
4-Port SSL/IPSec
VPN Router
Model:
RVL200