TP-Link TL-MR3620 TL-MR3620EU V1 User Guide - Page 57

endpoints use the same Encryption Algorithm, Integrity Algorithm, Diffie-Hellman, IP Address for VPN

Page 57 highlights

Chapter 11 VPN • Tunnel access from local IP addresses: Select Subnet Address if you want the whole LAN to join the VPN network, or select Single Address if you want a single IP to join the VPN network. • IP Address for VPN: Enter the IP address of your LAN. • Subnet Mask: Enter the subnet mask of your LAN. • Tunnel access from remote IP addresses: Select Subnet Address if you want the whole remote LAN to join the VPN network, or select Single Address if you want a single IP to join the VPN network. • IP Address for VPN: Enter the IP address of the remote LAN. • IP Subnet Mask: Enter the subnet mask of the remote LAN. • Key Exchange Method: Select Auto (IKE) or Manual to be used to authenticate IPSec peers. • Authentication Method: Select Pre-Shared Key (recommended). • Pre-Shared Key: Create a pre-shared key to be used for authentication. • Perfect Forward Secrecy: Select Enable or Disable as an additional security protocol for the pre-shared key. You can configure the advanced settings as needed. It's recommended to keep the default values. If you want to change these settings, make sure that both VPN server endpoints use the same Encryption Algorithm, Integrity Algorithm, Diffie-Hellman Group and Key Lifetime in both phase1 and phase2. 5. Click Save. 53

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93

53
Chapter 11
VPN
Tunnel access from local IP addresses
: Select
Subnet Address
if you want the whole
LAN to join the VPN network, or select
Single Address
if you want a single IP to join
the VPN network.
IP Address for VPN
: Enter the IP address of your LAN.
Subnet Mask
: Enter the subnet mask of your LAN.
Tunnel access from remote IP addresses
: Select
Subnet Address
if you want the
whole remote LAN to join the VPN network, or select
Single Address
if you want a
single IP to join the VPN network.
IP Address for VPN
: Enter the IP address of the remote LAN.
IP Subnet Mask
: Enter the subnet mask of the remote LAN.
Key Exchange Method
: Select
Auto (IKE)
or
Manual
to be used to authenticate IPSec
peers.
Authentication Method
: Select
Pre-Shared Key
(recommended).
Pre-Shared Key
: Create a pre-shared key to be used for authentication.
Perfect Forward Secrecy
: Select
Enable
or
Disable
as an additional security protocol
for the pre-shared key.
You can configure the advanced settings as needed. It’s recommended to keep the
default values. If you want to change these settings, make sure that both VPN server
endpoints use the same Encryption Algorithm, Integrity Algorithm, Diffie-Hellman
Group and Key Lifetime in both phase1 and phase2.
5. Click
Save
.