TP-Link Archer D9 Archer D9 V1 User Guide - Page 46

Remote IPSec Gateway Address URL

Page 46 highlights

Arche r D9 AC1900 Wire le ss Dual Band Gigabit ADSL2+ M ode m Router Use r Guide Figure 4-22  IPSe c Conne ction Name : Enter a name for your VPN.  Remote IPSec Gateway Address (URL): Enter the destination gateway IP address which is the public WAN IP or Domain Name of the remote VPN server endpoint. (For example: Input 219.134.112.247 in Device1, Input 219.134.112.246 in Device 2)  Tunnel access from local IP addresses: Choose Subnet if you want the Whole LAN to join the VPN network, or else choose Single Address if you want single IP to join the VPN network.  IP Address for VPN: Enter the IP address of your LAN. (For example: Input 192.168.1.1 in Device1, Input 192.168.2.1 in Device2)  IP Subnetmask: Enter the Subnet mask of your LAN. ( For example: Input 255.255.255.0 in both Device1 and Device2)  Tunnel access from remote IP addresses: Choose Subnet if you want the Remote Whole LAN to join the VPN network, or else choose Single Address if you want single IP to join the VPN network.  IP Address for VPN: Enter the IP address of the Remote LAN. ( For example: Input 192.168.2.1 in Device1,Input 192.168.1.1 in Device2)  IP Subnetmask: Enter the subnetmask of the remote LAN. ( For example: Input 255.255.255.0 in both De v ice1 and De vice2)  Ke y Exchange Method: Select Auto (IKE) or M anual.  Authe ntication Method: Select Pre -Shared Ke y (recommended).  Pre -Shared Ke y: Input the Pre-Shared key for Authentication. (For example: Input 12345678)  Pe rfe ct Forward Se crecy: PFS is an additional security protocol. After complete the basic settings and click Save/Apply in both Device1 and Device2, PCs in LAN1 could communicate with PCs in remote LAN2. (For example: You can ping the IP address of PC2 which is 192.168.2.100 in PC1)  Note: The VPN Servers Endpoint from both ends must use the same pre-shared keys and Perfect Forward Secrecy settings. 35

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125

Archer
D9
AC1900 Wireless Dual Band Gigabit ADSL2+ Modem Router User Guide
Figure 4-22
IPSec Connection Name:
Enter a name for your VPN.
Remote IPSec Gateway Address (URL):
Enter the destination gateway IP address which is
the public WAN IP or Domain Name of the remote VPN server endpoint. (For example: Input
219.134.112.247
in
Device1
, Input
219.134.112.246
in
Device 2
)
Tunnel access from local IP addresses:
Choose Subnet if you want the Whole LAN to join
the VPN network, or else choose Single Address if you want single IP to join the VPN network.
IP Address for VPN:
Enter the IP address of your LAN. (For example: Input
192.168.1.1
in
Device1
, Input
192.168.2.1
in
Device2
)
IP Subnetmask:
Enter the Subnet mask of your LAN. ( For example: Input
255.255.255.0
in
both
Device1
and
Device2
)
Tunnel access from remote IP addresses:
Choose Subnet if you want the Remote Whole
LAN to join the VPN network, or else choose Single Address if you want single IP to join the
VPN network.
IP Address for VPN:
Enter the IP address of the Remote LAN. ( For example: Input
192.168.2.1
in
Device1
,Input
192.168.1.1
in
Device2
)
IP Subnetmask:
Enter the subnetmask of the remote LAN. ( For example: Input
255.255.255.0
in both
Device1
and
Device2
)
Key Exchange Method:
Select
Auto (IKE)
or
Manual
.
Authentication Method:
Select
Pre-Shared Key
(recommended).
Pre-Shared Key:
Input the Pre-Shared key for Authentication. (For example: Input 12345678)
Perfect Forward Secrecy:
PFS is an additional security protocol.
After complete the basic settings and click Save/Apply in both
Device1
and
Device2
, PCs in LAN1
could communicate with PCs in remote LAN2. (For example: You can ping the IP address of PC2
which is 192.168.2.100 in PC1)
Note:
The VPN Servers Endpoint from both ends must use the same pre-shared keys and Perfect
Forward Secrecy settings.
35