Netgear DG834v3 DG834v3 Reference Manual

Netgear DG834v3 - ADSL Modem Router Manual

Netgear DG834v3 manual content summary:

  • Netgear DG834v3 | DG834v3 Reference Manual - Page 1
    Reference Manual for the ADSL Modem Router DG834 v3 NETGEAR, Inc. 4500 Great America Parkway Santa Clara, CA 95054 USA 202-10153-01 October 2006
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 2
    Trademarks NETGEAR is a trademark of Netgear, Inc. Microsoft, Windows, and Windows NT installed and used in accordance with the instructions, may cause harmful interference to radio determined by turning the equipment off and on, the user is encouraged to try to correct the interference by one
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 3
    otras disposiciones aplicables o exigibles de la Directiva 1999/5/CE. Greek] NETGEAR, Inc DG834 ADSL Modem Router 1999/5/ΕΚ. Français [French] Par la présente NETGEAR, Inc. déclare que l'appareil DG834 ADSL Modem Router est conforme aux exigences essentielles et aux autres dispositions
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 4
    in the DG834 v3 product package. Bestätigung des Herstellers/Importeurs Es wird hiermit bestätigt, daß das DG834 ADSL Modem Router gemäß der certain restrictions. Please refer to the notes in the operating instructions. Federal Office for Telecommunications Approvals has been notified of the
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 5
    radio interference. Read instructions for correct handling. WProduct and Publication Details Model Number: Publication Date: Product Family: Product Name: Home or Business Product: Language: Publication Part Number: DG834 v3 October 2006 Modem Router DG834 ADSL Modem Router Home English 202-10153
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 6
    vi v1.1, October 2006
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 7
    for the ADSL Modem Router DG834 v3 Chapter 1 About This Manual Audience, Scope, Conventions, and Formats 1-1 How to Print this Manual 1-2 Chapter 2 Introduction About the Modem Router 2-1 Key Features ...2-2 A Powerful, True Firewall 2-2 Easy Installation and Management 2-3 Protocol Support
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 8
    the Configuration from a File 4-2 How to Erase the Configuration 4-2 Upgrading the Modem Router's Firmware 4-2 How to Upgrade the Modem Router Firmware 4-3 Network Management Information 4-4 Viewing Modem Router Status and Usage Statistics 4-4 Viewing Attached Devices 4-8 Viewing, Selecting
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 9
    Port 5-4 MTU Size ...5-4 Configuring LAN IP Settings 5-4 DHCP ...5-6 How to Configure LAN TCP/IP Gateway VPN Tunnel on the DG834 v3 6-6 Step 2: Configuring the NETGEAR ProSafe VPN Client on 6-36 Using Manual Policy to Configure VPN Tunnels 6-46 Chapter 7 Troubleshooting Basic Functioning ...7-1
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 10
    the LAN Path to Your Router 7-7 Testing the Path from Your Computer to a Remote Device 7-8 Restoring the Default Configuration and Password 7-9 Using the Reset button 7-9 Problems with Date and Time 7-10 Appendix A Technical Specifications Appendix B NETGEAR VPN Configuration DG834 v3 to FVL328
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 11
    Emphasis, books, CDs, URL names User input Screen text, file and server names, extensions, commands, IP addresses This guide uses the following formats to highlight special messages: This manual is written for the DG834 ADSL Modem Router according to these specifications: Note: This format is used
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 12
    Reference Manual for the ADSL Modem Router DG834 v3 How to Print this Manual To print this manual you can choose one of the following several options, according to your needs. • Printing a Page in the HTML View. Each page in the HTML version of the manual is dedicated to a major topic. Use the Print
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 13
    Networking and TCP/IP Addressing:" in Appendix C to become more familiar with the terms and procedures used in this manual. About the Modem Router The DG834 ADSL Modem Router provides continuous, high-speed 10/100 Ethernet access between your Ethernet devices. With minimum setup, you can install
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 14
    from your LAN to Internet locations or services that you specify as off-limits. • Logs security incidents The DG834 v3 will log security events such as blocked incoming traffic, port scans, attacks, and administrator logins. You can configure the modem router to email the log to you at specified
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 15
    . • Visual monitoring The modem router's front panel LEDs provide an easy way to monitor its status and activity. • Flash erasable programmable read-only memory (EPROM) for firmware upgrades. Protocol Support The DG834 v3 supports Transmission Control Protocol/Internet Protocol (TCP/IP) and Routing
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 16
    from the ISP during connection setup and forwards DNS requests from the LAN. • Classical IP (RFC 1577) Some Internet service providers, in Europe for example, use Classical IP in their ADSL services. In such cases, the modem router is able to use the Classical IP address from the ISP. • PPP over
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 17
    Manual for the ADSL Modem Router DG834 v3 Virtual Private Networking (VPN) The DG834 ADSL Modem Router provides a secure encrypted connection between your local area network (LAN) and remote networks or clients. It includes the following VPN features: • Supports 5 VPN connections. • Supports
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 18
    automatically extended to one year. For instructions on activating these services, refer to "Trend Micro Home Network Security" on page 3-15. What's in the Box? The product package should contain the following items: • DG834 ADSL Modem Router • AC power adapter (varies by region) • Category 5 (Cat
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 19
    Manual for the ADSL Modem Router DG834 v3 The Modem Router's Front Panel The DG834 ADSL Modem Router front panel shown below contains status LEDs. 1 2 3 4 Figure 2-1 You can use the LEDs to verify various conditions. Table 2-1 lists and describes each LED on the front panel of the modem router
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 20
    Reference Manual for the ADSL Modem Router DG834 v3 The Router's Rear Panel The rear panel of the DG834 ADSL Modem Router (Figure 2-2) contains port connections. 2 4 1 3 Figure 2-2 Viewed from left to right, the rear panel contains the following elements: 1. RJ-11 ADSL port for connecting the
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 21
    Reference Manual for the ADSL Modem Router DG834 v3 Connecting the Router to the Internet To connect your DG834 ADSL Modem Router to the Internet, refer to the ADSL Modem Router Setup Manual on the ADSL Modem Router Resource CD or online as shown in the following table. Table 2-1. Language Dutch
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 22
    Reference Manual for the ADSL Modem Router DG834 v3 2-10 v1.1, October 2006 Introduction
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 23
    . How to Change the Built-In Password 1. Log in to the modem router at its default LAN address of http://192.168.0.1 with its default User Name of admin, default password of password, or using whatever Password and LAN address you have chosen for the modem router. Figure 3-1 Protecting Your Network
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 24
    Reference Manual for the ADSL Modem Router DG834 v3 2. From the Main Menu of the browser interface, under the Maintenance heading, select Set Password to bring up the menu shown in Figure 3-2. Figure 3-2 3. To change the password, first enter the old password, and then enter the new password twice.
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 25
    Sites The DG834 ADSL Modem Router allows you to restrict access to Internet content based on functions such as Web addresses and Web address keywords. 1. Log in to the modem router at its default LAN address of http://192.168.0.1 with its default User Name of admin, default password of password, or
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 26
    Reference Manual for the ADSL Modem Router DG834 v3 2. Select the Block Sites link supported in the Keyword list. 5. To delete a keyword or domain, select it from the list, click Delete Keyword, then click Apply. 6. To specify a trusted user, enter that computer's IP address in the Trusted IP Address
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 27
    Reference Manual for the ADSL Modem Router DG834 v3 You can specify one trusted user, which is a computer that will be exempt from blocking and logging. Since the trusted user will be identified by an IP address, you should configure that computer with a fixed IP address. 7. Click Apply to save your
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 28
    of the desired new position and click OK. Inbound Rules (Port Forwarding) Because the DG834 v3 uses Network Address Translation (NAT), your network presents only one IP address to the Internet, and outside users cannot directly address any of your local computers. However, by defining an inbound
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 29
    Manual for the ADSL Modem Router DG834 v3 Remember that allowing inbound services opens holes in your firewall. Only enable those ports Server Enter the IP address of the computer or server on your LAN which will receive the inbound traffic covered by this rule. • WAN Users These settings determine
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 30
    Reference Manual for the ADSL Modem Router DG834 v3 - Any - all IP addresses are covered by this rule. - Address range - if this option is selected, you must enter the Start and Finish fields. - Single address - enter the required address in the Start field. • Log You can select whether the traffic
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 31
    Reference Manual for the ADSL Modem Router DG834 v3 Considerations for Inbound Rules • If your external IP address is assigned dynamically by your ISP, the IP address may change periodically as the DHCP lease expires. Consider using the Dynamic DNS feature in the Advanced menu so that external users
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 32
    Reference Manual for the ADSL Modem Router DG834 v3 Outbound Rule Example: Blocking Instant Messenger If you want to block Instant Messenger usage by employees during working hours, you can create an outbound rule to block that application from any internal IP address to any external address
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 33
    Reference Manual for the ADSL Modem Router DG834 v3 - Single address - enter the required address in the Start field. • WAN Users These settings determine which packets are covered by the rule, based on their destination WAN IP address. Select the desired option: - Any - all IP addresses are covered
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 34
    the DG834 v3 already holds a list of many service port numbers, you are not limited to these choices. Use the procedure below to create your own service definitions. How to Define Services 1. Log in to the modem router at its default LAN address of http://192.168.0.1 with its default User Name
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 35
    your Time Zone: 1. Log in to the modem router at its default LAN address of http://192.168.0.1 with its default User Name of admin, default password of password, or using whatever Password and LAN address you have chosen for the modem router. Protecting Your Network v1.1, October 2006 3-13
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 36
    Reference Manual for the ADSL Modem Router DG834 v3 2. Select the Schedule link of the Security menu to the standard time. 4. The modem router has a list of NETGEAR NTP servers. If you would prefer to use a particular NTP server as the primary server, enter its IP address under Use this NTP Server.
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 37
    in the Block Services menu or Port forwarding in the Ports menu, you can set up a schedule for when blocking occurs or when access is not restricted. 1. Log in to the modem router at its default LAN address of http://192.168.0.1 with its default User Name of admin, default password of password, or
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 38
    instructions. For assistance, refer to the Home Network Security Quick Start Guide included on the NETGEAR Resource CD. (You can download this document and the Home Network Security User's Guide at http://www.trendmicro.com/en/support/tmss/netgear.) • Enable Trend Micro Security Services. Select
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 39
    Reference Manual for the ADSL Modem Router DG834 v3 Note: If your ISP bills by the amount of time or traffic you use, set the update frequency to once a day. • Client Virus Protection Status. Provides information on all computers on your network. - IP Address: The computer's IP address - Computer
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 40
    Reference Manual for the ADSL Modem Router DG834 v3 Parental Controls Settings Click Parental Controls under Content Filtering on the Main menu to get the Trend Micro Parental Controls menu shown below: Click this
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 41
    Reference Manual for the ADSL Modem Router DG834 v3 To select Parental Controls Mode: • Click Use General Controls to select General mode. In General mode, one access profile applies to all users. • Click Use Per-User Controls to select Per-User mode. In Per-User mode, each user has an individual
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 42
    Manual for the ADSL Modem Router DG834 v3 b. To create a custom profile, click Use Custom Settings and then select the check boxes as desired. (For additional choices, click More Categories). c. To allow unrestricted Internet access, click No Restrictions. d. Click Apply. To change a user software,
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 43
    Manual for the ADSL Modem Router DG834 v3 • Illegal/Questionable: Sites that advocate or advise on performing illegal acts such as service , nationality, ethnic origin, and so forth. • Weapons: Sites that sell, review, or describe guns, knives, martial arts devices, and related accessories. Does not
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 44
    Reference Manual for the ADSL Modem Router DG834 v3 3-22 v1.1, October 2006 Protecting Your Network
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 45
    to a File 1. Log in to the modem router at its default LAN address of http://192.168.0.1 with its default User Name of admin, default password of password, or using whatever User Name, Password and LAN address you have chosen for the modem router. 2. From the Maintenance heading of the Main
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 46
    restore the factory default configuration settings without knowing the login password or IP address, you must use the Default Reset button on the rear panel of the modem router. See Figure 2-2 on page 2-8. Upgrading the Modem Router's Firmware The software of the DG834 ADSL Modem Router is stored in
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 47
    Manual for the ADSL Modem Router DG834 v3 How to Upgrade the Modem Router Firmware Note: NETGEAR recommends that you back up your configuration before doing a firmware upgrade. After the upgrade is complete, you may need to restore your configuration settings. 1. Download and unzip the new software
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 48
    Reference Manual for the ADSL Modem Router DG834 v3 Network Management Information The DG834 v3 provides a variety of status and usage information which is discussed below. Viewing Modem Router Status and Usage Statistics From the Main Menu, under Maintenance, select Modem Router Status to view the
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 49
    ON, the modem router will assign IP addresses to PCs on the LAN. IP Subnet Mask Displays the IP Subnet Mask being used by the Local (LAN) port of the modem router. The default is 255.255.255.0. Modem These parameters apply to the Local (WAN) port of the modem router. ADSL Firmware Version The
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 50
    Reference Manual for the ADSL Modem Router DG834 v3 Click the Show Statistics button to display modem router usage statistics, as shown in Figure 4-3 below: Figure 4-4 This screen shows the following statistics:. Table 4-1. Router Statistics Fields Field WAN, LAN, or Serial Port Status TxPkts
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 51
    Reference Manual for the ADSL Modem Router DG834 v3 Table 4-1. Router Statistics Fields ( ADSL port. The connection status. ON or OFF ON or OFF The IP Address assigned to the WAN port by the ADSL Internet Service Provider. The Network Mask assigned to the WAN port by the ADSL Internet Service
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 52
    Manual for the ADSL Modem Router DG834 v3 Viewing Attached Devices The Attached Devices menu contains a table of all IP devices that the modem router Information The modem router will log security-related events such as denied incoming service requests, hacker probes, and administrator logins. If you
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 53
    Reference Manual for the ADSL Modem Router DG834 v3 An example of the logs file is shown below. Figure 4-7 Log entries are described in Table 4-1 below: Managing Your Network 4-9 v1.1, October 2006
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 54
    Manual for the ADSL Modem Router DG834 v3 Table 4-1. Security Log entry descriptions Field Date and Time Description or Action Source IP Source port and interface Destination Destination port The name or IP address of the destination device or Web site. The service port number of the destination
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 55
    Reference Manual for the ADSL Modem Router DG834 v3 Saving Log Files on a Server You can choose to write the logs to a computer running a syslog program. To activate this feature, select to Broadcast on Lan or enter the IP address of the server where the Syslog file will be written. Examples of Log
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 56
    Manual for the ADSL Modem Router DG834 v3 modem router. • Send alerts and logs via email. - Send To This E-mail Address Enter the e-mail address where you want to send the alerts and logs. Use a full e-mail address, such as [email protected]. - Outgoing Mail Server. Enter the name or IP address
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 57
    Reference Manual for the ADSL Modem Router DG834 v3 - Check My Mail Server requires authentication if you need to login to your SMTP server to send E-mail. If you check this box, you must enter the user name and password for the mail server. Tip: If you cannot remember the above information from
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 58
    the Remote Management page, you can allow a user or users on the Internet to configure, upgrade and check the status of your DG834 ADSL Modem Router. Note: Be sure to change the modem router's default password to a very secure password. The ideal password should contain no dictionary words from any
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 59
    Reference Manual for the ADSL Modem Router DG834 v3 Configuring Remote Management 1. Log in to the modem router at its default LAN address of http://192.168.0.1 with its default User Name of admin, default password of password, or using whatever User Name, Password and LAN address you have chosen
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 60
    Reference Manual for the ADSL Modem Router DG834 v3 Web browser access normally uses the standard HTTP service port 80. For greater security, you can change the remote management Web interface to a custom port by entering that number in the box provided. Choose a number between 1024 and 65535, but
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 61
    ADSL Modem Router. Configuring Advanced Security The DG834 ADSL Modem Router provides a variety of advanced features, such as: • Setting up a Demilitarized Zone (DMZ) Server • Connecting Automatically, as Required • Disabling Port Scan and DOS Protection • Responding to a Ping on the Internet WAN
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 62
    , follow these steps: 1. Log in to the modem router at its default LAN address of http://192.168.0.1 with its default User Name of admin, default password of password, or using whatever Password and LAN address you have chosen for the modem router. 5-2 Advanced Configuration v1.1, October 2006
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 63
    Reference Manual for the ADSL Modem Router DG834 v3 2. From the Main Menu, under Advanced, click the WAN Setup link to view the page shown in Figure 5-1: Figure 5-1 3. Select the Default DMZ Server check box. 4. Type the IP address for that server. 5. Click Apply to save your changes. Connect
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 64
    LAN IP services such as DHCP and RIP. These features can be found under the Advanced heading in the Main Menu of the browser interface. The modem router is shipped preconfigured to use private IP addresses on the LAN side, and to act as a DHCP server. The modem router's default LAN IP configuration
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 65
    Reference Manual for the ADSL Modem Router DG834 v3 These addresses are part of the Internet Engineering Task Force (IETF)-designated private address range for use in private networks, and should be suitable in most applications. If your network has a requirement to use a different IP addressing
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 66
    Reference Manual for the ADSL Modem Router DG834 v3 • RIP Version This controls the format and the broadcasting method of the RIP packets that the modem router sends. It recognizes both formats when receiving. By default, this is set for RIP-1. - RIP-1 is universally supported. RIP-1 is probably
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 67
    Reference Manual for the ADSL Modem Router DG834 v3 The router will deliver the following parameters to any LAN device that requests DHCP: • An IP Address from the range you have defined • Subnet Mask • Gateway IP Address is the router's LAN IP address • Primary DNS Server, if you entered a Primary
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 68
    Reference Manual for the ADSL Modem Router DG834 v3 How to Configure LAN TCP/IP Settings 1. Log in to the router at its default LAN address of http://192.168.0.1 with its default User Name of admin, default password of password, or using whatever User Name, Password and LAN address you have chosen
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 69
    service provider, log in to your account, and register your new IP address. How to Configure Dynamic DNS 1. Log in to the router at its default LAN address of http://192.168.0.1 with its default User Name of admin, default password of password, or using whatever User Name, Password and LAN address
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 70
    Manual for the ADSL Modem Router DG834 v3 9. If your dynamic DNS provider allows the use of wildcards in resolving your URL, you can select the Use wildcards check box to activate this feature. For example, the wildcard feature will cause *.yourhost.dyndns.org to be aliased to the same IP address
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 71
    Reference Manual for the ADSL Modem Router DG834 v3 In this example: • The Destination IP Address and IP Subnet Mask fields specify that this static route applies to all 134.177.x.x addresses. • The Modem Router IP Address fields specifies that all traffic for these addresses should be forwarded to
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 72
    Reference Manual for the ADSL Modem Router DG834 v3 3. To add or edit a Static Route: a. Click Type the Gateway IP Address, which must be a router on the same LAN segment as the router. h. Type a number between 1 and 15 as the Metric value. This represents the number of routers between your network
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 73
    Reference Manual for the ADSL Modem Router DG834 v3 Universal Plug and Play (UPnP) Universal Plug and Play (UPnP) helps devices, such as Internet appliances and computers, access the network and connect to other devices as needed. UPnP devices can automatically discover the services from other
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 74
    Reference Manual for the ADSL Modem Router DG834 v3 • UPnP Portmap Table: The UPnP Portmap Table displays the IP address of each UPnP device that is currently accessing the Router and which ports (Internal and External) that device has opened. The UPnP Portmap Table also displays what type of port
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 75
    Manual Policy. Overview of VPN Configuration Two common scenarios for configuring VPN tunnels are between a remote personal computer and a network gateway and between two or more network gateways. The DG834 v3 supports both of these types of VPN configurations. The DG834 ADSL Modem Router supports
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 76
    Reference Manual for the ADSL Modem Router DG834 v3 Client-to-Gateway VPN Tunnels Client-to-Gateway VPN Tunnels provide secure access from a remote PC, such as a telecommuter connecting to an office network (see Figure 6-1). VPN Tunnel DG834 PC (Running NETGEAR PCs ProSafe VPN Client) Figure
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 77
    Reference Manual for the ADSL Modem Router DG834 v3 A VPN between two or more NETGEAR VPN-enabled routers is a good way to connect branch or home offices and business partners over the Internet. VPN tunnels also enable access to network resources across the Internet. In this case, use DG834 v3s on
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 78
    IP address must always be the initiator. • What method will you use to configure your VPN tunnels? - The VPN Wizard using VPNC defaults (see Table 6-2) - The typical automated Internet Key Exchange (IKE) setup (see "Using Auto Policy to Configure VPN Tunnels" on page 6-36) - A Manual Keying setup
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 79
    Reference Manual for the ADSL Modem Router DG834 v3 - MDS: 128 bits, faster but less secure. - SHA-1: 160 bits, slower but more secure. Note: NETGEAR publishes additional interoperability scenarios with various gateway and client software products. Look on the NETGEAR web site at www.netgear.com for
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 80
    Reference Manual for the ADSL Modem Router DG834 v3 How to Set Up a Client-to-Gateway VPN Configuration Setting up a VPN between a remote PC running the NETGEAR ProSafe VPN Client and a network gateway (see Figure 6-3) involves the following two steps: • "Step 1: Configuring the Client-to-Gateway
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 81
    Reference Manual for the ADSL Modem Router DG834 v3 Table 6-1. VPN Tunnel Configuration Worksheet Connection Name: Pre-Shared Key: Secure Association -- Main Mode or Manual Keys: Perfect Forward Secrecy -- Enabled or Disabled: Encryption Protocol -- DES or 3DES: Authentication Protocol -- MD5 or
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 82
    Reference Manual for the ADSL Modem Router DG834 v3 1. Log in to the DG834 v3 at its LAN address of http://192.168.0.1 with its default user name of admin and password of password. Click the VPN Wizard link in the main menu to display this screen. Click Next to proceed. Figure 6-4 2. Fill in the
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 83
    Reference Manual for the ADSL Modem Router DG834 v3 The Summary screen below displays. Figure 6-6 Virtual Private Networking (Advanced Feature) 6-9 v1.1, October 2006
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 84
    Reference Manual for the ADSL Modem Router DG834 v3 To view the VPNC recommended authentication and encryption settings used by the VPN Wizard, click the "here" link (see Figure 6-6). Click Back to return to
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 85
    Reference Manual for the ADSL Modem Router DG834 v3 To view or modify software you may be running on your PC. 1. Install the NETGEAR ProSafe VPN Client on the remote PC and reboot. • You may need to insert your Windows CD to complete the installation. • If you do not have a modem or dial-up adapter
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 86
    Manual for the ADSL Modem Router DG834 v3 b. From the Edit menu of the Security Policy Editor, click Add, then Connection. A "New Connection" listing appears in the list of policies. Rename the "New Connection" so that it matches the Connection Name you entered in the VPN Settings of the DG834 v3
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 87
    Reference Manual for the ADSL Modem Router DG834 v3 Figure 6-10 c. Select the Secure in the Connection Security check box. d. Select IP Subnet in the ID Type menu. e. In this example, type 192.168.3.1 in the Subnet field as the network address of the DG834 v3. f. Enter 255.255.255.0 in the Mask
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 88
    Reference Manual for the ADSL Modem Router DG834 v3 b. Click on the Security Policy subheading to show the Security Policy menu. Figure 6-11 c. Select the Main Mode in the Select Phase 1 Negotiation Mode check box. 4. Configure the VPN Client Identity. In this step, you will provide information
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 89
    Manual for the ADSL Modem Router DG834 v3 a. In the Network Security Policy list on the left side of the Security Policy Editor window, click on My Identity. Figure 6-12 b. Choose None in the Select Certificate menu. c. Select IP Address in the ID Type menu. If you are using a virtual fixed IP
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 90
    Reference Manual for the ADSL Modem Router DG834 v3 5. Configure the VPN Client Authentication Proposal. In this step, you will provide the type of encryption (DES or 3DES) to be used for this connection. This selection must match your selection in the DG834 v3 configuration. a. In the Network
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 91
    Reference Manual for the ADSL Modem Router DG834 v3 a. Expand the Key Exchange window, select Save. After you have configured and saved the VPN client information, your PC will automatically open the VPN connection when you attempt to access any IP addresses in the range of the remote VPN router
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 92
    , you can open the browser of the PC and enter the LAN IP address of the remote DG834 v3. After a short wait, you should see the login screen of the Modem Router (unless another PC already has the DG834 v3 management interface open). 6-18 Virtual Private Networking (Advanced Feature) v1.1, October
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 93
    Reference Manual for the ADSL Modem Router DG834 v3 Information on the progress and status of the VPN client connection can be viewed by opening the NETGEAR ProSafe Log Viewer. 1. To launch this function, click on the Windows Start button, then select Programs, then NETGEAR ProSafe VPN Client, then
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 94
    Manual for the ADSL Modem Router DG834 v3 In this example you can see the following: • The DG834 v3 has a public IP WAN address of 22.23.24.25. • The DG834 v3 has a LAN IP address of 192.168.3.1. • The VPN client PC has a dynamically assigned address using the VPNC default parameters listed in
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 95
    ADSL Modem Router DG834 v3 Set the LAN IPs on each DG834 v3 to different subnets and configure each properly for the Internet. The examples below assume the following settings: Table 6-1. VPN Tunnel Configuration Worksheet Connection Name: Pre-Shared Key: Secure Association -- Main Mode or Manual
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 96
    Reference Manual for the ADSL Modem Router DG834 v3 Follow this procedure to configure a gateway-to-gateway VPN tunnel using the VPN Wizard. 1. Log in to the DG834 v3 on LAN A at its default LAN address of http://192.168.0.1 with its default user name of admin and password of password. Click the VPN
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 97
    Reference Manual for the ADSL Modem Router DG834 v3 3. Fill in the IP Address or FQDN for the target VPN endpoint WAN connection and click Next. Enter the WAN IP address of the remote VPN gateway: (e.g., 22.23.24.25) Figure 6-23 4. Identify the IP addresses at the target endpoint which can use this
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 98
    Reference Manual for the ADSL Modem Router DG834 v3 The Summary screen below displays. Figure 6-25 6-24 Virtual Private Networking (Advanced Feature) v1.1, October 2006
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 99
    Reference Manual for the ADSL Modem Router DG834 v3 To view the VPNC recommended authentication and encryption settings used by the VPN Wizard, click the "here" link (see Figure 6-25). Click Back to return
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 100
    Reference Manual for the ADSL Modem Router DG834 v3 6. Repeat for the DG834 v3 on LAN B and pay special attention to use the following network settings as appropriate. • WAN IP of the remote VPN gateway (e.g., 14.15.16.17) • LAN IP settings of the remote VPN gateway: - IP Address (e.g, 192.168.0.1)
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 101
    Reference Manual for the ADSL Modem Router DG834 v3 b. Click on VPN Status (Figure 6-30) to get the Current VPN Tunnels (SAs) screen (Figure 6-29). Click on Connect for the VPN tunnel you want
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 102
    Reference Manual for the ADSL Modem Router DG834 v3 Using the VPN Status Page to Activate a VPN Tunnel To use the VPN Status screen to activate a VPN tunnel, perform the following steps: 1. Log in to the Modem Router. 2. Open the DG834 v3 management interface and click on VPN Status to get the VPN
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 103
    Reference Manual for the ADSL Modem Router DG834 v3 Activate the VPN Tunnel by Pinging the Remote Endpoint Note: This section uses 192.168.3.1 for an example remote endpoint LAN IP address. To activate the VPN tunnel by pinging the remote endpoint (e.g., 192.168.3.1), do the following steps
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 104
    Manual for the ADSL Modem Router DG834 v3 Figure 6-33 Once the connection is established, you can open the browser of the PC and enter the LAN IP address of the remote DG834 v3. After a short wait, you should see the login screen of the Modem Router (unless another PC already has the DG834 v3
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 105
    Reference Manual for the ADSL Modem Router DG834 v3 Log-this log shows the details of recent VPN activity, including the building of the VPN tunnel. If there is a problem with the VPN tunnel, refer to the log for information about what might be the cause of the problem. • Click Refresh to see the
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 106
    Reference Manual for the ADSL Modem Router DG834 v3 • HLifeTime (Secs)-the remaining Hard Lifetime for this SA in seconds. When the Hard Lifetime becomes zero, the SA (Security Association) will be terminated. (It
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 107
    Reference Manual for the ADSL Modem Router DG834 v3 Using the Policy Table on the VPN Policies Page to Deactivate a VPN Tunnel To use the VPN Policies page to deactivate a VPN tunnel, perform the following steps: 1. Log in to the Modem Router. 2. Open the DG834 v3 management interface and click on
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 108
    Reference Manual for the ADSL Modem Router DG834 v3 2. Open the DG834 v3 management interface and click on VPN Status to get the VPN Status/Log screen (Figure 6-38). Figure 6-38 3. Click VPN Status (Figure 6-38) to get
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 109
    Reference Manual for the ADSL Modem Router DG834 v3 1. Log in to the Modem Router. 2. Open the DG834 v3 management interface and click VPN Policies to display the VPN Policies screen (Figure 6-40). Select the radio button for the VPN tunnel to be deleted
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 110
    Manual for the ADSL Modem Router DG834 v3 How to Set Up VPN Tunnels in Special Circumstances When the VPN Wizard and its VPNC defaults performs negotiations between the two VPN endpoints to automatically generate and update the required encryption parameters. Click the VPN Policies link of
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 111
    Reference Manual for the ADSL Modem Router DG834 v3 Figure 6-41 Virtual Private Networking (Advanced Feature) v1.1, October 2006 6-37
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 112
    Reference Manual for the ADSL Modem Router DG834 v3 The DG834 v3 VPN tunnel network connection fields are defined as follows: General. These settings identify this policy and determine its major characteristics. • Policy Name-Enter a unique name
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 113
    the ADSL Modem Router DG834 v3 • Single PC - no Subnet-select this option if there is no LAN (only a single PC) at the remote endpoint. If this option is selected, no additional data is required. The typical application is a PC running the VPN client at the remote end. • Single address-Enter an IP
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 114
    Reference Manual for the ADSL Modem Router DG834 v3 • Fully Qualified User Name-the name, E-mail address, or other ID of the remote VPN endpoint. Remote Identity Data-enter the data for the selection above. (If "IP Address" is selected, no input is required.) Parameters. Encryption Algorithm-
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 115
    Reference Manual for the ADSL Modem Router DG834 v3 Example of Using Auto Policy A 14.15.16.17 DG834 VPN Firewall VPN Tunnel B 22.23.24.25 DG834 VPN Firewall 192.168.0.1 192.168.3.1 PCs PCs Figure 6-42 1. Set the LAN IPs on each DG834 v3 to different subnets and configure each properly for
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 116
    Reference Manual for the ADSL Modem Router DG834 v3 2. Open the DG834 v3 on LAN A management interface and click on VPN Policies. Figure 6-43 3. Click Add Auto Policy. 4. Enter policy settings (see Figure 6-44). • General - Policy Name = GtoG - Remote VPN Endpoint Address Type = Fixed IP Address -
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 117
    Reference Manual for the ADSL Modem Router DG834 v3 - Pre-shared Key = 12345678 Figure 6-44 Virtual Private Networking (Advanced Feature) v1.1, October 2006 6-43
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 118
    ADSL Modem Router DG834 v3 5. Click Apply. The Get VPN Policies web page is displayed. Figure 6-45 6. Repeat for the DG834 v3 on LAN B and pay special attention to use the following network settings as appropriate. • General, Remote Address Data (e.g., 14.15.16.17) • Remote LAN, Start IP Address
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 119
    Reference Manual for the ADSL Modem Router DG834 v3 a. Open the DG834 v3 management interface and click on VPN Status to display the VPN Status/Log screen (Figure 6-46). Figure 6-46 b. Click VPN Status (Figure 6-46) to display
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 120
    Reference Manual for the ADSL Modem Router DG834 v3 Using Manual Policy to Configure VPN Tunnels As an alternative to IKE, you may use Manual Keying, in which you must specify each phase of the connection. A "Manual" VPN policy requires all settings for the VPN tunnel to be manually input at each
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 121
    Reference Manual for the ADSL Modem Router DG834 v3 • Remote VPN Endpoint-select the desired option (IP address or Fully Qualified Domain Name) and enter the address of the remote VPN endpoint to which you wish to connect. Note: The remote VPN endpoint must have this VPN Gateway's address entered
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 122
    Reference Manual for the ADSL Modem Router DG834 v3 Encryption-select the desired Encryption Algorithm, and enter the ASCII characters. • MD5-128 bits, faster but less secure. • SHA-1 (default)-160 bits, slower but more secure. 6-48 Virtual Private Networking (Advanced Feature) v1.1, October 2006
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 123
    Reference Manual for the ADSL Modem Router DG834 v3 Virtual Private Networking (Advanced Feature) v1.1, October 2006 6-49
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 124
    Reference Manual for the ADSL Modem Router DG834 v3 6-50 Virtual Private Networking (Advanced Feature) v1.1, October 2006
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 125
    gives information about troubleshooting your DG834 ADSL Modem Router. After each problem description, instructions are provided to help you diagnose and solve the problem. For the common problems listed, go to the section indicated. • Is the router on? • Have I connected the router correctly? Go to
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 126
    's configuration to factory defaults. This will set the router's IP address to 192.168.0.1. This procedure is explained in "Using the Reset button" on page 7-9. If the error persists, you might have a hardware problem and should contact technical support. LAN or Internet Port LEDs Not On If either
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 127
    Reference Manual for the ADSL Modem Router DG834 v3 • Be sure you are using the correct cable: - When connecting the router's WAN ADSL port, use the cable that was supplied with the DG834 v3. Troubleshooting the Web Configuration Interface If you are unable to access the router's Web Configuration
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 128
    Manual for the ADSL Modem Router DG834 v3 • Click the Refresh or Reload button in the Web browser. The changes may have occurred, but the Web browser may be caching the old configuration. Troubleshooting the ISP Connection If your router is unable to access the Internet, you should check the ADSL
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 129
    , and update the router's ADSL Settings accordingly. • Your ISP may require a login program. Ask your ISP whether they require PPP over Ethernet (PPPoE) or PPP over ATM (PPPOA) login. • If you have selected a login program, you may have incorrectly set the Service Name, User Name and Password. See
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 130
    may be using an incorrect Service Name, User Name or Password. There also may be a provisioning problem with your ISP. Note: Unless you connect manually, the modem router will not authenticate using PPPoE or PPPoA until data is transmitted to the network. 7-6 Troubleshooting v1.1, October 2006
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 131
    Reference Manual for the ADSL Modem Router DG834 v3 Troubleshooting Internet Browsing If your modem router can obtain an IP address but your computer is unable to load any Web pages from the Internet: • Your computer may not recognize any DNS server addresses. A DNS server is a host on the Internet
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 132
    Reference Manual for the ADSL Modem Router DG834 v3 Reply from < IP address >: bytes=32 time=NN ms TTL=xxx If the path is not working, you see this message: Request timed out If the path is not functioning correctly, you could have one of the following problems: • Wrong physical connections - Make
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 133
    to the ADSL Modem Router Setup Manual for details (see Table 2-1 on page 2-9). Restoring the Default Configuration and Password This section explains how to restore the factory default configuration settings, changing the router's administration password to password and the IP address to 192.168
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 134
    Reference Manual for the ADSL Modem Router DG834 v3 Problems with Date and Time The E-mail menu in the Content Filtering section displays the current date and time of day. The DG834 ADSL Modem Router uses the Network Time Protocol (NTP) to obtain the current time from one of several Network Time
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 135
    for the DG834 ADSL Modem Router. Network Protocol and Standards Compatibility Data and Routing Protocols: TCP/IP, RIP-1, RIP-2, DHCP, PPP over Ethernet (PPPoE) or PPP over ATM (PPPoA), RFC 1483 Bridged or Routed Ethernet, and RFC 1577 Classical IP over ATM Power Adapter North America
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 136
    Reference Manual for the ADSL Modem Router DG834 v3 A-2 Technical Specifications v1.1, October 2006
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 137
    VPN tunnel from a NETGEAR DG834 v3 to a FVL328. This case study follows the VPN Consortium interoperability profile guidelines (found at http://www.vpnc.org/InteropProfiles/Interop-01.html). Configuration Profile The configuration in this document follows the addressing and configuration mechanics
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 138
    Reference Manual for the ADSL Modem Router DG834 v3 10.5.6.0/24 LAN IP 10.5.6.1 VPNC Example Network Interface Addressing 172.23.9.0/24 Gateway A DG834 14.15.16.17 WAN IP 22.23.24.25 WAN IP Gateway B FVL328 LAN IP 172.23.9.1 Figure B-1 Note: Product updates are available on the NETGEAR,
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 139
    Reference Manual for the ADSL Modem Router DG834 v3 toFVL328 10.5.6.1 172.23.9.1 Click VPN Policies under Advanced - VPN to invoke this screen toFVL328 22.23.24.25 10 5 6 172 23 9 Figure B-2 NETGEAR VPN Configuration B-3 v1.1, October 2006
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 140
    Reference Manual for the ADSL Modem Router DG834 v3 2. Configure the FVL328 as in the Gateway-to-Gateway procedures for the VPN Wizard (see "How to Set Up a Gateway-to-Gateway VPN Configuration" on page 6-20), being certain to use appropriate network addresses for the environment. a. In Step 1,
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 141
    ADSL Modem Router DG834 v3 toDG834 22.23.24.25 14.15.16.17 Click IKE Policies under VPN to invoke this screen toDG834 22.23.24.25 14.15.16.17 toDG834 172.23.9.1 10.5.6.1 Click VPN Policies under VPN to invoke this screen toDG834 toDG834 14.15.16.17 172 23 9 1 10 5 6 Figure B-3 NETGEAR
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 142
    Manual for the ADSL Modem Router DG834 v3 3. Test the VPN tunnel by pinging the remote network from a PC attached to the DG834 v3 NETGEAR DG834 v3 to a FVL328 using a Fully Qualified Domain Name (FQDN) to resolve the public address of one or both routers firmware is up to date, all of the addresses
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 143
    Reference Manual for the ADSL Modem Router DG834 v3 Table B-1. Profile Summary VPN Consortium Scenario: Type of VPN Security Scheme: IP Addressing: NETGEAR-Gateway A NETGEAR-Gateway B Scenario 1 LAN-to-LAN or Gateway-to-Gateway (not PC/Client-to-Gateway) IKE with Preshared Secret/Key (not
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 144
    Reference Manual for the ADSL Modem Router DG834 v3 The Use of a Fully Qualified Domain Name (FQDN) Many ISPs (Internet Service Providers) provide connectivity to their customers using dynamic instead of static IP addressing. This means that a user's IP address does not remain constant over time
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 145
    Manual for the ADSL Modem Router DG834 v3 Figure B-6 b. Configure this screen with appropriate account and hostname settings and then click Apply. • Check the box Use a Dynamic DNS Service. • Host Name = dg834.dyndns.org • User Name =
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 146
    Reference Manual for the ADSL Modem Router DG834 v3 a. Browse to the Dynamic DNS Setup Screen (see Figure B-8) in the Advanced menu. Figure B-8 b. Select Apply. • Host and Domain Name = fvl328.dyndns.org • User Name =
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 147
    Reference Manual for the ADSL Modem Router DG834 v3 • Password =
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 148
    Reference Manual for the ADSL Modem Router DG834 v3 c. Click Show Status. The resulting screen should show Update OK: good (see Figure B-10). Figure B-10 5. Configure the DG834 v3 as in the Gateway-to-Gateway procedures using the VPN Wizard (see "How to Set Up a Gateway-to-Gateway VPN Configuration
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 149
    Reference Manual for the ADSL Modem Router DG834 v3 a. In Step 1, enter toDG834 for the Connection Name. b. In Step 2, enter dg834.dyndns.org for the remote WAN's IP address. c. In Step 3, enter the following: • IP Address = 10.5.6.1 • Subnet Mask = 255.255.255.0 7. Test the VPN tunnel by pinging
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 150
    ADSL Modem Router DG834 v3 Configuration Summary (Telecommuter Example) The configuration in this document follows the addressing and configuration mechanics defined by the VPN Consortium. Gather all the necessary information before you begin the configuration process. Verify whether the firmware
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 151
    Manual for the ADSL Modem Router DG834 v3 Setting Up the Client-to-Gateway VPN Configuration (Telecommuter Example) Setting up a VPN between a remote PC running the NETGEAR the VPN router at its LAN address of http://192.168.0.1 with its default user name of admin and password of password. Click the
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 152
    Reference Manual for the ADSL Modem Router DG834 v3 fromDG834G (in the example) Dynamic IP address IKE Keep Alive is optional; must match Remote LAN IP Address when enabled (remote PC must respond to pings) Subnet address 192.168.0.1 (in this example) 255.255.255.0 Single address 192.168.2.3 (in
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 153
    Office This procedure describes how to configure the DG834 ADSL Modem Router. We will assume the PC running the client has a dynamically assigned IP address. The PC must have a VPN client program installed that supports IPSec (in this case study, the NETGEAR VPN ProSafe Client is used). Go to the
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 154
    Reference Manual for the ADSL Modem Router DG834 v3 c. Install the IPSec Component. You may have the option to install either the VPN Adapter or the IPSec Component or both. The VPN Adapter is not necessary. d. The system should show the ProSafe icon ( ) in the system tray after rebooting. e. Double
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 155
    Manual for the ADSL Modem Router DG834 v3 Figure B-16 c. Select Secure in the Connection Security check box. d. Select IP Subnet in the ID Type menu. e. In this example, type 192.168.0.1 in the Subnet field as the network address of the DG834 v3 Policy in the DG834 ADSL Modem Router software. a. In
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 156
    Reference Manual for the ADSL Modem Router DG834 v3 b. Click on the Security Policy subheading to show the Security Policy menu. Figure B-17 c. Select the Main Mode in the Select Phase 1 Negotiation Mode check box. 4. Configure the VPN Client Identity. In this step, you will provide information
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 157
    Reference Manual for the ADSL Modem Router DG834 v3 a. In the Network Security Policy list on the left side of the Security Policy Editor window, in the Virtual Adapter menu. d. In the Internet Interface box, select Intel PRO/100VE Network Connection (in this example, your Ethernet adapter may be
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 158
    Manual for the ADSL Modem Router DG834 v3 e. Click the Pre-Shared Key button. In the Pre-Shared Key dialog box, click the Enter Key button. Enter the DG834 v3 in the VPN router configuration. a. In the Network Security Policy list on the left side of the Security Policy Editor window, expand the
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 159
    Reference Manual for the ADSL Modem Router DG834 v3 b. Expand the Authentication subheading by double clicking its name or clicking on the "+" symbol. for this connection. This selection must match your selection in the VPN router configuration. NETGEAR VPN Configuration v1.1, October 2006 B-23
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 160
    Reference Manual for the ADSL Modem Router DG834 v3 a. Expand the Key Exchange window, select Save. After you have configured and saved the VPN client information, your PC will automatically open the VPN connection when you attempt to access any IP addresses in the range of the remote VPN router
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 161
    Router DG834 v3 8. Check the VPN Connection. To check the VPN Connection, you can initiate a request from the remote PC to the VPN router's network by using the Connect option in the DG834 ADSL Modem Router menu bar (see Figure B-22). Since the remote PC has a dynamically assigned WAN IP address
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 162
    Reference Manual for the ADSL Modem Router DG834 v3 c. Type ping -t 192.168.0.1, and then click OK. Figure B-23 This will cause a continuous ping to be sent to the VPN router. After between several seconds and two minutes, the ping response should change from timed out to reply. Figure B-24 Once the
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 163
    Reference Manual for the ADSL Modem Router DG834 v3 Monitoring the VPN Tunnel (Telecommuter Example) Viewing the PC Client's Connection Monitor and Log Viewer To view information on the progress and status of the VPN client connection, open the DG834 ADSL Modem Router Log Viewer. 1. To launch this
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 164
    Reference Manual for the ADSL Modem Router DG834 v3 Note: While your PC is connected to a remote LAN through a VPN, you might not have normal Internet access. If this is the case, you will need to close the VPN connection in order to have normal Internet access. Viewing the VPN Router's VPN Status
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 165
    Reference Manual for the ADSL Modem Router DG834 v3 2. To view the VPN tunnels status, click the VPN Status link on the right side of the main menu. Figure B-27 Current VPN Tunnels (SAs) screen NETGEAR VPN Configuration v1.1, October 2006 B-29
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 166
    Reference Manual for the ADSL Modem Router DG834 v3 B-30 v1.1, October 2006 NETGEAR VPN Configuration
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 167
    of the technologies used in your NETGEAR product. Document Link Internet Networking and TCP/IP http://documentation.netgear.com/reference/enu/tcpip/index.htm Addressing: Wireless Communications: http://documentation.netgear.com/reference/enu/wireless/index.htm Preparing a Computer for Network
  • Netgear DG834v3 | DG834v3 Reference Manual - Page 168
    Reference Manual for the ADSL Modem Router DG834 v3 C-2 Related Documents v1.1, October 2006
  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168

202-10153-01
October 2006
NETGEAR
, Inc.
4500 Great America Parkway
Santa Clara, CA 95054 USA
Reference Manual for the
ADSL Modem Router
DG834 v3