Page 331 / 794
Scroll up to view Page 326 - 330
Vigor2860 Series User’s Guide
317
3.13 Central VPN Management
Vigor2860 can build virtual private network (VPN) between itself and any other TR-069 CPE
by the function of central VPN management. In addition, it can be treated as a server (called
CVM server) which can manage TR-069 CPE for periodical firmware upgrade, configuration
backup and restoring configuration.
Note:
Such menu can manage the CPE connected through WAN only.
3.13.1 General Setup
This page is used to configure settings which will be used by the clients to register to such
Vigor router. Click
General Settings
and
IPsec VPN Settings
to configure the basic settings
for CVM mechanism.
Page 332 / 794
Vigor2860 Series User’s Guide
318
3.13.1.1 General Settings
To enable the CVM feature, the first thing you have to do is enabling CVM port or CVM SSL
Port.
Available settings are explained as follows:
Item
Description
CVM SSL Port
Check the box to enable the port setting.
Type the port number in the box.
CVM Port
Check the box to enable the port setting.
Type the port number in the box.
WAN IP for Remote
Connection
For Vigor router can manage only the client from WAN
interface, therefore you have to specify which interface will be
used for such function. If you choose MANUALLY, you have
to specify WAN IP address.
Username
Type a username which will be used by any CPE trying to
connect to Vigor router.
Password
Type the password for the user.
Polling Interval
Type the time value (unit is second). The range is from 60 ~
86400.
After finishing all the settings here, please click
OK
to save the configuration.
Page 333 / 794
Vigor2860 Series User’s Guide
319
3.13.1.2 IPsec VPN Settings
Central VPN management is operated through IPsec VPN connection.
Available settings are explained as follows:
Item
Description
IPsec Mode
Choose
Aggressive
or
Main
as the IPsec Mode.
Security Method
Choose one of the following methods (AH or ESP) for the
security of data transmission. For example, choose
AH
to
specify the IPsec protocol for the Authentication Header
protocol. The data will be authenticated but not be encrypted.
Encryption Type
Choose one of the selections as the encryption type.
Local Subnet
Type the IP address and subnet mask of local host.
After finishing all the settings here, please click
OK
to save the configuration.
Page 334 / 794
Vigor2860 Series User’s Guide
320
3.13.2 CPE Management
All the CPEs managed by Vigor2860 series can be seen with icons from this page
Before using such feature, make sure the CVM port has been enabled and configured properly.
3.13.2.1 Managed Device List
This page allows you to manage the CPEs connected to Vigor2860 series.
Page without CPE connected
Page 335 / 794
Vigor2860 Series User’s Guide
321
Page with CPE connected
Available settings are explained as follows:
Item
Description
Managed Devices List
This area displays device icons (up to 8) for the CPE managed
by Vigor2860 series.
Edit
– To modify the name and location of specific CPE, click
the one you want and click the
Edit
button. A pop up window
will appear. Simply change the name and/or location manually.
Delete
– To disconnect the management of any CPE, click the
CPE icon you want and click the Delete button.
Note
: Double-clicking the CPE icon also can pop up the
Managed Device Detail window. However, you cannot
modify any data on the window.