Netgear DGND3300v2 User Manual - Page 111

Table 7., VPN Manual Policy Fields and Settings, Continued, Fields and Settings, Description

Page 111 highlights

N300 Wireless Dual Band ADSL2+ Modem Router DGND3300v2 User Manual Table 7. VPN Manual Policy Fields and Settings (Continued) Fields and Settings Description Local LAN IP Address Subnet Mask Enter the network mask. The remote VPN endpoint must have these IP addresses entered as its remote addresses. Single PC - no Subnet Select this option if there is no LAN (only a single PC) at the remote endpoint. If this option is selected, no additional data is required. Single/Start IP Address • The IP address for a single address, or the starting address for an address range used on the LAN. If you want to make a single server on your LAN available to remote users, use a single address settings. • Any. The remote VPN endpoint can be at any IP address. Finish IP Address For an address range, enter the finish IP address. This must be an address range used on your LAN. Subnet Mask Enter the network mask. Remote LAN IP Address IP Address The remote VPN endpoint must have these IP addresses entered as its local addresses. Single/Start IP Address Single PC - no Subnet. Select this option if there is no LAN (only a single PC) at the remote endpoint. If this option is selected, no additional data is required. The typical application is a PC running the VPN client at the remote end. • Enter an IP address on the remote LAN. You can use this setting to access a server. • For a range of addresses, enter the starting IP address. This must be an address range used on the remote LAN. • Any. Any outgoing traffic from specified Local IP computers triggers an attempted VPN connection to the remote VPN endpoint. Be sure you want this option before selecting it. Finish IP Address Enter the finish IP address for a range of addresses. This must be an address range used on the remote LAN. Subnet Mask Enter the network mask. ESP Configuration SPI ESP (Encapsulating Security Payload) provides security for the payload (data) sent through the VPN tunnel. Encryption Enter the required Security Policy Indexes (SPIs). Each policy must have unique SPIs. These settings must match the remote VPN endpoint. The in setting here must match the out setting on the remote VPN endpoint, and the out setting here must match the in setting on the remote VPN endpoint. Select an encryption algorithm, and enter the key in the field provided. For 3DES, the keys should be 24 ASCII characters, and for DES, the keys should be 8 ASCII characters. • DES. The Data Encryption Standard (DES) processes input data that is 64 bits wide, encrypting these values using a 56-bit key. Faster but less secure than 3DES. • 3DES. (Triple DES) achieves a higher level of security by encrypting the data three times using DES with three different, unrelated keys. Authentication Chapter 6. Virtual Private Networking | 111

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177

Chapter 6.
Virtual Private Networking
|
111
N300 Wireless Dual Band ADSL2+ Modem Router DGND3300v2 User Manual
Local LAN IP Address
The remote VPN
endpoint must have
these IP addresses
entered as its remote
addresses.
Subnet Mask
Enter the network mask.
Single PC - no
Subnet
Select this option if there is no LAN (only a single PC) at the
remote endpoint. If this option is selected, no additional data is
required.
Single/Start IP
Address
The IP address for a single address, or the starting address for
an address range used on the LAN. If you want to make a single
server on your LAN available to remote users, use a single
address settings.
Any
. The remote VPN endpoint can be at any IP address.
Finish IP
Address
For an address range, enter the finish IP address. This must be an
address range used on your LAN.
Subnet Mask
Enter the network mask.
Remote LAN IP Address
The remote VPN
endpoint must have
these IP addresses
entered as its local
addresses.
IP Address
Single PC - no Subnet
. Select this option if there is no LAN (only
a single PC) at the remote endpoint. If this option is selected, no
additional data is required. The typical application is a PC running
the VPN client at the remote end.
Single/Start IP
Address
• Enter an IP address on the remote LAN. You can use this setting
to access a server.
• For a range of addresses, enter the starting IP address. This
must be an address range used on the remote LAN.
Any
. Any outgoing traffic from specified Local IP computers
triggers an attempted VPN connection to the remote VPN
endpoint. Be sure you want this option before selecting it.
Finish IP
Address
Enter the finish IP address for a range of addresses. This must be
an address range used on the remote LAN.
Subnet Mask
Enter the network mask.
ESP Configuration
ESP (Encapsulating
Security Payload)
provides security for the
payload (data) sent
through the VPN tunnel.
SPI
Enter the required Security Policy Indexes (SPIs). Each policy
must have unique SPIs. These settings must match the remote
VPN endpoint. The in setting here must match the out setting on
the remote VPN endpoint, and the out setting here must match the
in setting on the remote VPN endpoint.
Encryption
Select an encryption algorithm, and enter the key in the field
provided. For 3DES, the keys should be 24 ASCII characters, and
for DES, the keys should be 8 ASCII characters.
DES
. The Data Encryption Standard (DES) processes input data
that is 64 bits wide, encrypting these values using a 56-bit key.
Faster but less secure than 3DES.
3DES
. (Triple DES) achieves a higher level of security by
encrypting the data three times using DES with three different,
unrelated keys.
Authentication
Table 7.
VPN Manual Policy Fields and Settings
(Continued)
Fields and Settings
Description