Page 81 / 105 Scroll up to view Page 76 - 80
72
4-Port Gigabit Security Router with VPN
Appendix D: Configuring a Gateway-to-Gateway IPSec Tunnel
Overview
Appendix D: Configuring a Gateway-to-Gateway IPSec Tunnel
Overview
This appendix explains how to configure an IPSec VPN tunnel between two VPN Routers by example. Two PCs are
used to test the liveliness of the tunnel.
Before You Begin
The following is a list of equipment you need:
Two Windows desktop PCs (each PC will be connected to a VPN Router)
Two VPN Routers that are both connected to the Internet
Configuring the VPN Settings for the VPN Routers
Configuring VPN Router 1
Follow these instructions for the first VPN Router, designated VPN Router 1. The other VPN Router is designated
VPN Router 2.
NOTE:
Each computer must have a network
adapter installed.
Figure D-1: Diagram of All VPN Tunnels
PC 1
PC 2
VPN Router 1
VPN Router 2
Downloaded from
www.Manualslib.com
manuals search engine
Page 82 / 105
73
4-Port Gigabit Security Router with VPN
Appendix D: Configuring a Gateway-to-Gateway IPSec Tunnel
Configuring the VPN Settings for the VPN Routers
1.
Launch the web browser for a networked PC, designated PC 1.
2.
Enter the VPN Router’s local IP address in the
Address
field (default is
192.168.1.1
). Then press
Enter
.
3.
A password request page will appear. (Non-Windows XP users will see a similar screen.) Complete the
User
Name
and
Password
fields (
admin
is the default user name and password). Then click the
OK
button.
4.
Click the
VPN
tab.
5.
Click the
IPSec VPN
tab.
6.
For the VPN Tunnel setting, select
Enabled
.
7.
Enter a name in the
Tunnel Name
field.
8.
For the Local Secure Group, select
Subnet
. Enter VPN Router 1’s local network settings in the
IP Address
and
Mask
fields.
9.
For the Remote Secure Group, select
Subnet
. Enter VPN Router 2’s local network settings in the
IP Address
and
Mask
fields. Note that the subnet of Router 2 must be different than the subnet of Router 1.
10. For the Remote Secure Gateway, select
IP Addr
. Enter VPN Router 2’s WAN IP address in the
IP Address
field.
11. Click the
Save Settings
button.
Figure D-2: Login Screen
Figure D-3: Security - VPN Screen (VPN Tunnel)
Downloaded from
www.Manualslib.com
manuals search engine
Page 83 / 105
74
4-Port Gigabit Security Router with VPN
Appendix D: Configuring a Gateway-to-Gateway IPSec Tunnel
Configuring the VPN Settings for the VPN Routers
Configuring VPN Router 2
Follow similar instructions for VPN Router 2.
1.
Launch the web browser for a networked PC, designated PC 2.
2.
Enter the VPN Router’s local IP address in the
Address
field (default is
192.168.1.1
). Then press
Enter
.
3.
A password request page will appear. (Non-Windows XP users will see a similar screen.) Complete the
User
Name
and
Password
fields (
admin
is the default user name and password).
Then click the
OK
button.
4.
If the LAN IP address is still the default one, change it to 172.168.1.1 and save the setting.
5.
Click the
VPN
tab.
6.
Click the
IPSec
VPN
tab.
7.
For the VPN Tunnel setting, select
Enabled
.
8.
Enter a name in the
Tunnel Name
field.
9.
For the Local Secure Group, select
Subnet
. Enter VPN Router 2’s local network settings in the
IP Address
and
Mask
fields.
10. For the Remote Secure Group, select
Subnet
. Enter VPN Router 1’s local network settings in the
IP Address
and
Mask
fields.
11. For the Remote Secure Gateway, select IP Addr. Enter VPN Router 1’s WAN IP address in the
IP Address
field.
12. Click the
Save Settings
button.
Figure D-4: Security - VPN Screen (VPN Tunnel)
Downloaded from
www.Manualslib.com
manuals search engine
Page 84 / 105
75
4-Port Gigabit Security Router with VPN
Appendix D: Configuring a Gateway-to-Gateway IPSec Tunnel
Configuring the Key Management Settings
Configuring the Key Management Settings
Configuring VPN Router 1
Following these instructions for VPN Router 1.
1.
On the
IPSec VPN
screen, select
3DES
from the
Encryption
drop-down menu.
2.
Select
MD5
from the
Authentication
drop-down menu.
3.
Keep the default Key Exchange Method,
Auto(IKE)
.
4.
Select
Pre-Shared Key
, and enter a string for this key., e.g. 13572468.
5.
For the PFS setting, select
Enabled
.
6.
If you need more detailed settings, click the
Advanced Settings
button. Otherwise, click the
Save Settings
button and proceed to the next section, “Configuring VPN Router 2.”
7.
On the
Auto (IKE) Advanced Settings
screen, keep the default Operation Mode,
Main
.
8.
For Phase 1, select 3
DES
from the
Encryption
drop-down menu.
9.
Select
MD5
from the
Authentication
drop-down menu.
10. Select
1024-bit
from the
Group
drop-down menu.
11. Enter
3600
in the
Key Life Time
field.
12. For Phase 2, the Encryption, Authentication, and PFS settings were set on the
VPN
screen.
Select
1024-bit
from the
Group
drop-down menu.
13. Keep the default Key Life Time value,
28800
.
14. Click the
Save Settings
button on the
Auto (IKE) Advanced Settings
screen.
15. Click the
Save Settings
button on the
IPSec VPN
screen.
Figure D-5: Auto (IKE) Advanced Settings Screen
Downloaded from
www.Manualslib.com
manuals search engine
Page 85 / 105
76
4-Port Gigabit Security Router with VPN
Appendix D: Configuring a Gateway-to-Gateway IPSec Tunnel
Configuring PC 1 and PC 2
Configuring VPN Router 2
For VPN Router 2, follow the same instructions in the previous section, “Configuring VPN Router 1.”
Configuring PC 1 and PC 2
1.
Set PC 1 and PC 2 to be DHCP clients (refer to Windows Help for more information).
2.
Verify that PC 1 and PC 2 can ping each other (refer to Windows Help for more information).
If the computers can ping each other, then you know the VPN tunnel is configured correctly. You can select
different algorithms for the encryption, authentication, and other key management settings for VPN Routers 1 and
2. Refer to the previous section, “Configuring the Key Management Settings,” for details.
Congratulations! You have successfully configured a VPN tunnel between two VPN Routers.
Downloaded from
www.Manualslib.com
manuals search engine

Rate

3.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top