Page 71 / 105 Scroll up to view Page 66 - 70
62
Appendix C: Configuring IPSec between a Windows 2000 or XP Computer and the Router
How to Establish a Secure IPSec Tunnel
4-Port Gigabit Security Router with VPN
How to Establish a Secure IPSec Tunnel
Step 1: Create an IPSec Policy
1.
Click the
Start
button, select
Run
, and type
secpol.msc
in the
Open
field.
The
Local Security Setting
screen
will appear.
2.
Right-click
IP Security Policies on Local Computer
(Win XP) or
IP Security Policies on Local Machine
(Win 2000), and click
Create IP Security Policy
.
3.
Click the
Next
button, and then enter a name for your policy (for example, to_Router). Then, click
Next
.
4.
Deselect the
Activate the default response rule
check box, and then click the
Next
button.
5.
Click the
Finish
button, making sure the
Edit
check box is checked.
Step 2: Build Filter Lists
Filter List 1: win->Router
1.
In the new policy’s properties screen, verify that the
Rules
tab is selected. Deselect the
Use Add Wizard
check box, and click the
Add
button to create a new rule.
2.
Make sure the
IP Filter List
tab is selected, and click the
Add
button.
NOTE:
The references in this section to “win” are
references to Windows 2000 and XP.
Figure C-1: Local Security Screen
Figure C-2: Rules Tab
Figure C-3: IP Filter List Tab
NOTE:
The text on your screen may differ from
the text in your instructions regarding the
OK
or
Close
buttons; click the appropriate button on
your screen.
Downloaded from
www.Manualslib.com
manuals search engine
Page 72 / 105
63
Appendix C: Configuring IPSec between a Windows 2000 or XP Computer and the Router
How to Establish a Secure IPSec Tunnel
4-Port Gigabit Security Router with VPN
3.
The
IP Filter List
screen should appear. Enter an appropriate name, such as win->Router, for the filter list, and
de-select the
Use Add
Wizard
check box. Then, click the
Add
button.
4.
The
Filters Properties
screen will appear. Select the
Addressing
tab. In the
Source address
field, select
My IP
Address
. In the
Destination address
field, select
A specific IP Subnet
, and fill in the IP Address: 192.168.1.0
and Subnet mask: 255.255.255.0. (These are the Router’s default settings. If you have changed these
settings, enter your new values.)
5.
If you want to enter a description for your filter, click the
Description
tab and enter the description there.
6.
Click the
OK
button. Then, click the
OK
or
Close
button on the
IP Filter List
window.
Figure C-4: IP Filter LIst
Figure C-5: Filters Properties
Figure C-6: New Rule Properties
Downloaded from
www.Manualslib.com
manuals search engine
Page 73 / 105
64
Appendix C: Configuring IPSec between a Windows 2000 or XP Computer and the Router
How to Establish a Secure IPSec Tunnel
4-Port Gigabit Security Router with VPN
Filter List 2: Router ->win
7.
The
New Rule Properties
screen will appear. Select the
IP Filter List
tab, and make sure that
win -> Router
is highlighted. Then, click the
Add
button.
8.
The
IP Filter List
screen should appear. Enter an appropriate name, such as Router->win for the filter list, and
de-select the
Use
Add Wizard
check box. Click the
Add
button.
9.
The
Filters Properties
screen will appear. Select the
Addressing
tab. In the
Source address
field, select
A
specific IP Subnet
, and enter the IP Address: 192.168.1.0 and Subnet mask: 255.255.255.0. (Enter your new
values if you have changed the default settings.) In the
Destination address
field, select
My IP Address
.
10. If you want to enter a description for your filter, click the
Description
tab and enter the description there.
11. Click the
OK
or
Close
button and the
New Rule Properties
screen should appear with the IP Filer List tab
selected. There should now be a listing for “Router -> win” and “win -> Router”. Click the
OK
(for WinXP) or
Close
(for Win2000) button on the
IP Filter List
window.
Figure C-7: IP Filter List
Figure C-8: Filters Properties
Figure C-9: New Rule Properties
Downloaded from
www.Manualslib.com
manuals search engine
Page 74 / 105
65
Appendix C: Configuring IPSec between a Windows 2000 or XP Computer and the Router
How to Establish a Secure IPSec Tunnel
4-Port Gigabit Security Router with VPN
Step 3: Configure Individual Tunnel Rules
Tunnel 1: win->Router
1.
From the
IP Filter List
tab, click the filter list win->Router.
2.
Click the
Filter Action
tab, and click the filter action
Require Security
radio button. Then, click the
Edit
button.
3.
From the
Security Methods
tab, verify that the
Negotiate security
option is enabled, and deselect the
Accept
unsecured communication, but always respond using IPSec
check box. Select
Session key Perfect
Forward Secrecy
, and click the
OK
button.
Figure C-12: Security Methods Tab
Figure C-10: IP Filter List Tab
Figure C-11: Filter Action Tab
Downloaded from
www.Manualslib.com
manuals search engine
Page 75 / 105
66
Appendix C: Configuring IPSec between a Windows 2000 or XP Computer and the Router
How to Establish a Secure IPSec Tunnel
4-Port Gigabit Security Router with VPN
4.
Select the
Authentication Methods
tab, and click the
Edit
button.
5.
Change the authentication method to
Use this string to protect the key exchange (preshared key)
, and
enter the preshared key string, such as XYZ12345. Click the
OK
button.
6.
This new Preshared key will be displayed. Click the
Apply
button to continue, if it appears on your screen;
otherwise, proceed to the next step.
Figure C-13: Authentication Methods
Figure C-14: Preshared Key
Figure C-15: New Preshared Key
Downloaded from
www.Manualslib.com
manuals search engine

Rate

3.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top