Netgear DGFV338 DGFV338 Reference Manual - Page 110

Setting up a VPN Connection using the VPN Wizard, Gateway, VPN tunnel connection, Connection Name

Page 110 highlights

DGFV338 ProSafe Wireless ADSL Modem VPN Firewall Router Reference Manual Setting up a VPN Connection using the VPN Wizard Setting up a VPN tunnel connection requires that all settings and parameters on both sides of the VPN tunnel match or mirror each other precisely, which can be a daunting task. The VPN Wizard can assist in guiding you through the setup procedure by asking you a series of questions that will determine the IPSec keys and VPN policies it sets up. It also will set the parameters for the network connection: Security Association, traffic selectors, authentication algorithm, and encryption. The parameters used by the VPN wizard are based on the VPNC recommendations. You will be able to view the suggested VPNC recommendations on the VPN Wizard summary page before establishing a VPN tunnel connection. To set up a Gateway VPN Tunnel using the VPN Wizard: 1. Select Gateway as your VPN tunnel connection. The wizard needs to know if you are planning to connect to a remote Gateway or setting up the connection for a remote client/PC to establish a secure connection to this device. 2. Select a Connection Name. Enter an appropriate name for the connection. This name is not supplied to the remote VPN Endpoint. It is used to help you manage the VPN settings. 3. Enter a Pre-shared Key. The key must be entered both here and on the remote VPN Gateway, or the remote VPN Client. This key length should be minimum 8 characters and should not exceed 49 characters. This method does not require using a CA (Certificate Authority). 4. Check the radio box for the WAN interface that will act as one end of this VPN tunnel: ADSL or WAN Ethernet. 5. Enter the Remote WAN IP Address or Internet Name of the gateway you want to connect to. • Both the remote WAN address and your local WAN address are required. When choosing these addresses, follow the guidelines in Table 5-1 above. • The remote WAN IP address of the Gateway must be a public address or the Internet name of the Gateway. The Internet name is the Fully Qualified Domain Name (FQDN) as setup in a Dynamic DNS service. Both local and remote ends should be defined as either IP addresses or Internet Names (FQDN). A combination of IP address and Internet Name is not permissible. 6. Enter the Local WAN IP Address or Internet Name of your gateway. The Local WAN IP address is used in the IKE negotiation phase. Automatically, the WAN IP or FQDN address assigned by your ISP may display. You can modify the WAN IP address to use your FQDN; required if the WAN Mode you selected is auto-rollover. 5-2 Virtual Private Networking v1.0, April 2007

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212

DGFV338 ProSafe Wireless ADSL Modem VPN Firewall Router Reference Manual
5-2
Virtual Private Networking
v1.0, April 2007
Setting up a VPN Connection using the VPN Wizard
Setting up a VPN tunnel connection requires that all settings and parameters on both sides of the
VPN tunnel match or mirror each other precisely, which can be a daunting task. The VPN Wizard
can assist in guiding you through the setup procedure by asking you a series of questions that will
determine the IPSec keys and VPN policies it sets up. It also will set the parameters for the
network connection: Security Association, traffic selectors, authentication algorithm, and
encryption. The parameters used by the VPN wizard are based on the VPNC recommendations.
You will be able to view the suggested VPNC recommendations on the VPN Wizard summary
page before establishing a VPN tunnel connection.
To set up a Gateway VPN Tunnel using the VPN Wizard:
1.
Select
Gateway
as your
VPN tunnel connection
. The wizard needs to know if you are
planning to connect to a remote Gateway or setting up the connection for a remote client/PC to
establish a secure connection to this device.
2.
Select a
Connection Name
. Enter an appropriate name for the connection. This name is not
supplied to the remote VPN Endpoint. It is used to help you manage the VPN settings.
3.
Enter a
Pre-shared Key
. The key must be entered both here and on the remote VPN Gateway,
or the remote VPN Client. This key length should be minimum 8 characters and should not
exceed 49 characters. This method does not require using a CA (Certificate Authority).
4.
Check the radio box for the
WAN interface
that will act as one end of this VPN tunnel: ADSL
or WAN Ethernet.
5.
Enter the
Remote WAN IP
Address or Internet Name
of the gateway you want to connect
to.
Both the remote WAN address and your local WAN address are required. When choosing
these addresses, follow the guidelines in
Table 5-1
above.
The remote WAN IP address of the Gateway must be a public address or the Internet name
of the Gateway. The
Internet name
is the Fully Qualified Domain Name (FQDN) as setup
in a Dynamic DNS service. Both local and remote ends should be defined as either IP
addresses or Internet Names (FQDN). A combination of IP address and Internet Name is
not permissible.
6.
Enter the
Local WAN IP Address or Internet Name
of your gateway.
The Local WAN IP address is used in the IKE negotiation phase. Automatically, the WAN IP or
FQDN address assigned by your ISP may display. You can modify the WAN IP address to use your
FQDN; required if the WAN Mode you selected is auto-rollover.