Page 46 / 72 Scroll up to view Page 41 - 45
´±
Using Linksys QuickVPN for Windows 2000, XP, or Vista
Wireless-G VPN Router with RangeBooster
Appendix C
Using the Linksys QuickVPN Software
Double-click the Linksys QuickVPN software icon on
your desktop or in the system tray.
QuickVPN Desktop Icon
QuickVPN Tray Icon—
No Connection
The QuickVPN Login screen will appear. In the
Profile 
Name
field, enter a name for your profile. In the
User 
Name
and
Password
fields, enter the User Name and
Password that were assigned to you. In the
Server 
Address
field, enter the IP address or domain name of
the Linksys Wireless-G VPN Router with RangeBooster.
In the
Port For QuickVPN
field, enter the port number
that the QuickVPN client will use to communicate with
the remote VPN router, or keep the default setting,
Auto
.
QuickVPN Login
To save this profile, click
Save
. (If there are multiple
sites to which you will need to create a tunnel, you can
create multiple profiles, but note that only one tunnel
can be active at a time.) To delete this profile, click
Delete
. For information, click
Help
.
To begin your QuickVPN connection, click
Connect
.
The connection’s progress is displayed:
Connecting
,
Provisioning
,
Activating Policy
, and
Verifying Network
.
When your QuickVPN connection is established, the
QuickVPN tray icon turns green, and the QuickVPN
Status screen appears. The screen displays the IP
address of the remote end of the VPN tunnel, the time
and date the VPN tunnel began, and the total length of
time the VPN tunnel has been active.
QuickVPN Tray Icon—
Connection
1.
2.
3.
4.
QuickVPN Status
To terminate the VPN tunnel, click
Disconnect
. To
change your password, click
Change Password
. For
information, click
Help
.
If you clicked
Change Password
and have permission
to change your own password, you will see the
Connect 
Virtual Private Connection
screen. Enter your password
in the
Old Password
field. Enter your new password in
the
New Password
field. Then enter the new password
again in the
Confirm New Password
field. Click
OK
to
save your new password. Click
Cancel
to cancel your
change. For information, click
Help
.
Connect Virtual Private Connection
NOTE:
You can change your password only if
you have been granted that privilege by your
system administrator.
Version Number of the QuickVPN Client
To display the version number of the QuickVPN Client:
Right-click the QuickVPN tray icon, then select
About
.
The
About
screen displays the QuickVPN Client version
number.
Click
OK
to close the
About
screen.
QuickVPN Client Version Number
5.
1.
2.
3.
Page 47 / 72
´²
Using Linksys QuickVPN for Windows 2000, XP, or Vista
Wireless-G VPN Router with RangeBooster
Appendix C
Distributing Certificates to QuickVPN Users
The following explains how to export a certificate from
the WRV200 for distribution to QuickVPN users, as well as
how to install the certificate on the QuickVPN users’ PCs.
Generate the Certificate as follows:
Log on to the Web-based Utility.
Select
VPN
, then
VPN Client Access
.
Click
Generate
to generate a new certificate.
Click
Export for Client
and save the certificate as
a
.PEM
file.
Distribute the certificate to all QuickVPN users.
Each QuickVPN user must then install the certificate as
follows:
Save the certificate into the directory where
the QuickVPN Client is installed. For example:
C:\Program Files\Linksys\QuickVPN Client\
Launch the QuickVPN Client and specify the User
Name, Password, and Server Address (IP address or
domain name).
Click
Connect
.
For more information on certificate management, go
to section “VPN > VPN Client Access“ in “Chapter 5:
Configuring the Wireless-G Router.”
1.
a.
b.
c.
d.
2.
3.
a.
b.
c.
Page 48 / 72
´³
Configuring IPSec with a Windows 2000
or XP Computer
Wireless-G VPN Router with RangeBooster
Appendix D
Appendix D:
Configuring
IPSec with
a Windows ²000 or XP
Computer
Introduction
This appendix explains how to establish a secure IPSec
tunnel using preshared keys to join a private network
inside the Router and a Windows 2000 or XP computer.
You can find detailed information on configuring the
Windows 2000 server at the Microsoft website:
Microsoft KB Q252735—How to Configure IPSec Tunneling
in Windows 2000:
Q²µ²/·/³µ.asp
Microsoft KB Q257225—Basic IPSec Troubleshooting in
Windows 2000:
Q²µ·/²/²µ.asp
NOTE:
Keep a record of any changes you make.
Those changes will be identical in the Windows
“secpol” application and the Router’s Web-
based Utility.
NOTE:
The text on your screen may differ from
the text in your instructions regarding the
OK
or
Close
buttons; click the appropriate button
on your screen.
Environment
The IP addresses and other specifics mentioned in this
appendix are for illustration purposes only.
Windows ²000 or Windows XP
IP Address: 140.111.1.2 <= User ISP provides IP Address;
this is only an example.
Subnet Mask: 255.255.255.0
WRV²00
WAN IP Address: 140.111.1.1 <= User ISP provides IP
Address; this is only an example.
Subnet Mask: 255.255.255.0
LAN IP Address: 192.168.1.1
Subnet Mask: 255.255.255.0
How to Establish a Secure IPSec Tunnel
Step 1: Create an IPSec Policy
Click
Start
, select
Run
, and type
secpol.msc
in the
Open
field. The Local Security Settings screen appears.
Local Security Settings
Right-click
IP Security Policies on Local Computer
(Windows XP) or
IP Security Policies on Local Machine
(Windows 2000), and click
Create IP Security Policy
.
Click the
Next
button, and then enter a name for your
policy (for example, to_Router). Then, click
Next
.
Deselect the
Activate the default response rule
check box, and then click
Next
.
Click
Finish
, making sure the
Edit
check box is
checked.
Step 2: Build Filter Lists
NOTE:
Throughout the following section the
term “win” refers to both Windows 2000 and
Windows XP.
NOTE:
The text on your screen may differ from
the text in your instructions regarding the
OK
or
Close
buttons; click the appropriate button
on your screen.
Filter List 1: win -> router
In the new policy’s properties screen, verify that the
Rules
tab is selected. Deselect the
Use Add Wizard
check box, and click
Add
to create a new rule.
Rules Tab
1.
2.
3.
4.
5.
1.
Page 49 / 72
´´
Configuring IPSec with a Windows 2000
or XP Computer
Wireless-G VPN Router with RangeBooster
Appendix D
Make sure the
IP Filter List
tab is selected. Click
Add
.
IP Filter List Tab
The
IP  Filter  List
screen should appear. Enter an
appropriate name, such as win->Router, for the filter
list, and de-select the
Use Add Wizard
check box.
Then, click
Add
.
IP Filter List
The
Filters  Properties
screen will appear. Select the
Addressing
tab.
Filters Properties
In the
Source address
field, select
My IP Address
. In the
Destination address
field, select
A specific IP Subnet
,
and enter the IP Address
±9².±¶8.±.0
and Subnet
2.
3.
4.
mask
²µµ.²µµ.²µµ.0
. (These are the Router’s default
settings. If you have changed these settings, enter
your new values.)
If you want to enter a description for your filter, click
the
Description
tab and enter the description there.
Click
OK
. Then, click
OK
or
Close
in the
IP  Filter  List 
window.
Filter List 2: router -> win
The
New Rule Properties
screen will appear. Select the
IP Filter List
tab, and make sure that
win -> Router
is
highlighted. Then, click
Add
.
New Rules Properties
The
IP  Filter  List
screen should appear. Enter an
appropriate name, such as
Router->win
for the filter
list, and de-select the
Use Add Wizard
check box.
Click
Add
.
IP Filter List
The
Filters  Properties
screen will appear. Select the
Addressing
tab. In the
Source  address
field, select
A specific IP Subnet
, and enter the IP Address
±9².±¶8.±.0
and Subnet mask
²µµ.²µµ.²µµ.0
. (Enter
your new values if you have changed the default
settings.) In the
Destination address
field, select
My IP
Address
.
5.
6.
7.
8.
9.
Page 50 / 72
´µ
Configuring IPSec with a Windows 2000
or XP Computer
Wireless-G VPN Router with RangeBooster
Appendix D
Filters Properties
If you want to enter a description for your filter, click
the
Description
tab and enter the description there.
Click
OK
or
Close
and the
New Rule Properties
screen
appears with the
IP Filter List
tab selected. The screen
will contain listings for
Router->win
and
win->Router
.
Click
OK
(Windows XP) or
Close
(Windows 2000) in the
IP Filter List
window.
New Rule Properties
Step 3: Configure Individual Tunnel Rules
Tunnel 1: win->Router
On the
IP Filter List
tab, select filter list
win->Router
.
IP Filter List Tab
10.
11.
1.
Click the
Filter  Action
tab, and click the filter action
Require Security
radio button. Then, click
Edit
.
Filter Action Tab
On the
Security Methods
tab, verify that the
Negotiate
security
option is enabled, and deselect the
Accept
unsecured communication, but always respond
using IPSec
check box. Select
Session key Perfect
Forward Secrecy
, and click
OK
.
Security Methods Tab
Select the
Authentication Methods
tab, and click
Edit
.
Authentication Methods Tab
Change the authentication method to
Use this string to
protect the key exchange (preshared key)
, and enter
the preshared key string, such as XYZ12345. Click
OK
.
2.
3.
4.
5.

Rate

4.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top