Netgear FVS338 FVS338 Reference Manual - Page 93

Virtual Private Networking, Considerations for Dual WAN Port Systems

Page 93 highlights

Chapter 5 Virtual Private Networking This chapter describes how to use the Virtual Private Networking (VPN) features of the VPN firewall. This chapter includes the following sections: • "Considerations for Dual WAN Port Systems" on page 5-1 • "Using the VPN Wizard for Client and Gateway Configurations" on page 5-2 • "Testing the Connections and Viewing Status Information" on page 5-11 • "IKE Policies" on page 5-14 • "VPN Policies" on page 5-16 • "Extended Authentication (XAUTH) Configuration" on page 5-18 • "Assigning IP Addresses to Remote Users (ModeConfig)" on page 5-23 • "Certificates" on page 5-31 Considerations for Dual WAN Port Systems If both of the WAN ports of the VPN firewall are configured, you can enable either Auto-Rollover mode for increased system reliability or Load Balancing mode for optimum bandwidth efficiency. This WAN mode choice impacts how the VPN features must be configured. The use of fully qualified domain names in VPN policies is mandatory when the WAN ports are in rollover mode. The diagram and table below shows how the WAN mode selection relates to VPN configuration. Firewall Rest of Firewall Functions Figure 5-1 Firewall WAN Port Functions Firewall Rollover Control WAN Auto-Rollover: FQDN Required for VPN WAN 1 Port WAN 2 Port Internet Same FQDN required for both WAN ports Virtual Private Networking 5-1 v1.0, March 2009

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200

Virtual Private Networking
5-1
v1.0, March 2009
Chapter 5
Virtual Private Networking
This chapter describes how to use the Virtual Private Networking (VPN) features of the VPN
firewall. This chapter includes the following sections:
“Considerations for Dual WAN Port Systems” on page 5-1
“Using the VPN Wizard for Client and Gateway Configurations” on page 5-2
“Testing the Connections and Viewing Status Information” on page 5-11
“IKE Policies” on page 5-14
“VPN Policies” on page 5-16
“Extended Authentication (XAUTH) Configuration” on page 5-18
“Assigning IP Addresses to Remote Users (ModeConfig)” on page 5-23
“Certificates” on page 5-31
Considerations for Dual WAN Port Systems
If both of the WAN ports of the VPN firewall are configured, you can enable either Auto-Rollover
mode for increased system reliability or Load Balancing mode for optimum bandwidth efficiency.
This WAN mode choice impacts how the VPN features must be configured.
The use of fully qualified domain names in VPN policies is mandatory when the WAN ports are in
rollover mode.
The diagram and table below shows how the WAN mode selection relates to VPN configuration.
Figure 5-1
Rest of
Firewall
Functions
Firewall
WAN Port
Functions
Firewall
Rollover
Control
Firewall
WAN 1 Port
WAN 2 Port
Internet
Same FQDN required for both WAN ports
WAN Auto-Rollover: FQDN Required for VPN