Netgear DG834 DG834v3 Reference Manual - Page 113

Single PC - no Subnet, Fully Qualified Domain Name

Page 113 highlights

Reference Manual for the ADSL Modem Router DG834 v3 • Single PC - no Subnet-select this option if there is no LAN (only a single PC) at the remote endpoint. If this option is selected, no additional data is required. The typical application is a PC running the VPN client at the remote end. • Single address-Enter an IP address in the "Single/Start IP address" field. This must be an address on the remote LAN. Typically, this setting is used when you wish to access a server on the remote LAN. • Range address-enter the starting IP address in the "Single/Start IP address" field, and the finish IP address in the "Finish IP address" field. This must be an address range used on the remote LAN. • Subnet address-enter an IP address in the "Single/Start IP address" field, and the desired network mask in the "Subnet Mask" field. The remote VPN endpoint must have these IP addresses entered as its "Local" addresses. IKE. Direction/Type-this setting is used when determining if the IKE policy matches the current traffic. Select the desired option. • Responder only-incoming connections are allowed, but outgoing connections will be blocked. • Initiator and Responder-both incoming and outgoing connections are allowed. Exchange Mode-ensure the remote VPN endpoint is set to use "Main Mode". Diffie-Hellman (DH) Group-the Diffie-Hellman algorithm is used when exchanging keys. The DH Group setting determines the number of bit size used in the exchange. This value must match the value used on the remote VPN Gateway. Local Identity Type-select the desired option to match the "Remote Identity Type" setting on the remote VPN endpoint. • WAN IP Address-your Internet IP address. • Fully Qualified Domain Name-your domain name. • Fully Qualified User Name-your name, E-mail address, or other ID. Local Identity Data-enter the data for the selection above. (If "WAN IP Address" is selected, no input is required.) Remote Identity Type-select the desired option to match the "Local Identity Type" setting on the remote VPN endpoint. • IP Address-the Internet IP address of the remote VPN endpoint. • Fully Qualified Domain Name-the Domain name of the remote VPN endpoint. Virtual Private Networking (Advanced Feature) v1.1, October 2006 6-39

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168

Reference Manual for the ADSL Modem Router DG834 v3
Virtual Private Networking (Advanced Feature)
6-39
v1.1, October 2006
Single PC - no Subnet
select this option if there is no LAN (only a single PC) at the remote
endpoint. If this option is selected, no additional data is required. The typical application is a
PC running the VPN client at the remote end.
Single address
Enter an IP address in the "Single/Start IP address" field. This must be an
address on the remote LAN. Typically, this setting is used when you wish to access a server on
the remote LAN.
Range address
enter the starting IP address in the "Single/Start IP address" field, and the
finish IP address in the "Finish IP address" field. This must be an address range used on the
remote LAN.
Subnet address
enter an IP address in the "Single/Start IP address" field, and the desired
network mask in the "Subnet Mask" field.
The remote VPN endpoint must have these IP addresses entered as its "Local" addresses.
IKE.
Direction/Type
this setting is used when determining if the IKE policy matches the current
traffic. Select the desired option.
Responder only
—incoming connections are allowed, but outgoing connections will be
blocked.
Initiator and Responder
both incoming and outgoing connections are allowed.
Exchange Mode
ensure the remote VPN endpoint is set to use "Main Mode".
Diffie-Hellman (DH) Group
the Diffie-Hellman algorithm is used when exchanging keys. The
DH Group setting determines the number of bit size used in the exchange. This value must match
the value used on the remote VPN Gateway.
Local Identity Type
—select the desired option to match the "Remote Identity Type" setting on the
remote VPN endpoint.
WAN IP Address
your Internet IP address.
Fully Qualified Domain Name
your domain name.
Fully Qualified User Name
your name, E-mail address, or other ID.
Local Identity Data
—enter the data for the selection above. (If "WAN IP Address" is selected, no
input is required.)
Remote Identity Type
—select the desired option to match the "Local Identity Type" setting on
the remote VPN endpoint.
IP Address
the Internet IP address of the remote VPN endpoint.
Fully Qualified Domain Nam
e
the Domain name of the remote VPN endpoint.