Netgear FVX538 FVX538 Reference Manual - Page 116

Creating a VPN Gateway Connection: Between FVX538 and FVS338, Configuring the FVX538

Page 116 highlights

ProSafe VPN Firewall 200 FVX538 Reference Manual • Tx (KBytes). The amount of data transmitted over this SA. • Tx (Packets). The number of packets transmitted over this SA. • State. The current state of the SA. Phase 1 is "Authentication phase" and Phase 2 is "Key Exchange phase". • Action. Allows you to terminate or build the SA (connection), if required. Creating a VPN Gateway Connection: Between FVX538 and FVS338 This section describes how to configure a VPN connection between a NETGEAR FVX538 VPN Firewall and a NETGEAR FVS338 VPN Firewall. Using the VPN Wizard for each VPN firewall, we will create a set of policies (IKE and VPN) that will allow the two firewalls to connect from locations with fixed IP addresses. Either firewall can initiate the connection. This procedure was developed using: • Netgear FVX538 VPN Firewall - WAN1 IP address is 10.1.32.40 - LAN IP address subnet is 192.168.1.1/255.255.255.0 • Netgear FVS338 VPN Firewall (remote gateway) - WAN IP address is 10.1.1.150 - LAN IP address subnet is 192.168.2.1/255.255.255.0 Configuring the FVX538 To configure the FVX538 VPN Wizard: 1. Select VPN from the main menu. The Policies submenu will display showing the IKE Policies screen 2. Select VPN Wizard. The VPN Wizard screen will display. 3. Select the VPN Tunnel connection type; in this case, the Gateway radio box is selected. 4. Give the client connection a name, such as to_fvs. 5. Enter a value for the pre-shared key. 5-14 v1.0, August 2006 Virtual Private Networking

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222

ProSafe VPN Firewall 200 FVX538 Reference Manual
5-14
Virtual Private Networking
v1.0, August 2006
Tx (KBytes)
. The amount of data transmitted over this SA.
Tx (Packets).
The number of packets transmitted over this SA.
State
. The current state of the SA. Phase 1 is “Authentication phase” and Phase 2 is “Key
Exchange phase”.
Action
. Allows you to terminate or build the SA (connection), if required.
Creating a VPN Gateway Connection: Between FVX538 and
FVS338
This section describes how to configure a VPN connection between a NETGEAR FVX538 VPN
Firewall and a NETGEAR FVS338 VPN Firewall.
Using the VPN Wizard for each VPN firewall, we will create a set of policies (IKE and VPN) that
will allow the two firewalls to connect from locations with fixed IP addresses. Either firewall can
initiate the connection.
This procedure was developed using:
Netgear FVX538 VPN Firewall
WAN1 IP address is 10.1.32.40
LAN IP address subnet is 192.168.1.1/255.255.255.0
Netgear FVS338 VPN Firewall (remote gateway)
WAN IP address is 10.1.1.150
LAN IP address subnet is 192.168.2.1/255.255.255.0
Configuring the FVX538
To configure the FVX538 VPN Wizard:
1.
Select
VPN
from the main menu. The
Policies
submenu will display showing the
IKE
Policies
screen
2.
Select
VPN Wizard
. The
VPN Wizard
screen will display.
3.
Select the
VPN Tunnel
connection type; in this case, the Gateway radio box is selected.
4.
Give the client connection a name, such as
to_fvs
.
5.
Enter a value for the pre-shared key.