Netgear FVS338 FVS338 Reference Manual - Page 107

Configuring the FVS338, Policies, VPN Wizard, VPN Client, home., Apply., VPN Policies

Page 107 highlights

FVS338 ProSafe VPN Firewall 50 Reference Manual Using the FVS338 VPN Wizard, we will create a single set of policies (IKE and VPN) that will allow up to 50 remote PCs to connect from locations in which their IP addresses are unknown in advance. The PCs may be directly connected to the Internet or may be behind NAT routers. If more PCs are to be connected, an additional policy or policies must be created. Each PC will use the NETGEAR VPN Client. Since the PC's IP address is assumed to be unknown, the PC must always be the Initiator of the connection. This procedure was developed and tested using: • NETGEAR ProSafe VPN Firewall 50 FVS338 • NETGEAR ProSafe VPN Client • NAT router: NETGEAR FR114P Configuring the FVS338 To configure the FVS338 using the VPN Wizard: 1. Select VPN from the main menu. The Policies screen will display. Click the VPN Wizard link. The VPN Wizard screen will display. 2. Check the VPN Client radio box to establish a remote VPN client. 3. Give the new connection a name such as home. 4. Enter a value for the pre-shared key. 5. Click Apply. The VPN Policies screen will display showing a VPN Client policy named home. Select the VPN Policies tab to display the corresponding "home" VPN Policy. Note: When XAuthentication (XAUTH) is enabled, incoming VPN connections are authenticated against the FVS338 Network Database first, then, if configured, a RADIUS server is checked. Virtual Private Networking v1.0, March 2008 5-13

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198

FVS338 ProSafe VPN Firewall 50 Reference Manual
Virtual Private Networking
5-13
v1.0, March 2008
Using the FVS338 VPN Wizard, we will create a single set of policies (IKE and VPN) that will
allow up to 50 remote PCs to connect from locations in which their IP addresses are unknown in
advance. The PCs may be directly connected to the Internet or may be behind NAT routers. If more
PCs are to be connected, an additional policy or policies must be created.
Each PC will use the NETGEAR VPN Client. Since the PC’s IP address is assumed to be
unknown, the PC must always be the Initiator of the connection.
This procedure was developed and tested using:
NETGEAR ProSafe VPN Firewall 50 FVS338
NETGEAR ProSafe VPN Client
NAT router: NETGEAR FR114P
Configuring the FVS338
To configure the FVS338 using the VPN Wizard:
1.
Select
VPN
from the main menu. The
Policies
screen will display. Click the
VPN Wizard
link. The
VPN Wizard
screen will display.
2.
Check the
VPN Client
radio box to establish a remote VPN client.
3.
Give the new connection a name such as
home.
4.
Enter a value for the pre-shared key.
5.
Click
Apply.
The
VPN Policies
screen will display showing a VPN Client policy named
home. Select the
VPN Policies
tab to display the corresponding “home” VPN Policy.
Note:
When XAuthentication (XAUTH) is enabled, incoming VPN connections are
authenticated against the FVS338 Network Database first, then, if configured,
a RADIUS server is checked.