Page 116 / 268 Scroll up to view Page 111 - 115
Reference Manual for the Model Wireless ADSL Firewall Router DG834G
8-10
Virtual Private Networking (Advanced Feature)
202-10006-05, June 2005
The Summary screen below displays.
Figure 8-6:
VPN Wizard Summary
Page 117 / 268
Reference Manual for the Model Wireless ADSL Firewall Router DG834G
Virtual Private Networking (Advanced Feature)
8-11
202-10006-05, June 2005
To view the VPNC recommended authentication and encryption settings used by the VPN
Wizard, click the “
here
” link (see
Figure 8-6
). Click
Back
to return to the Summary screen.
Figure 8-7:
VPNC Recommended Settings
3.
Click
Done
on the Summary screen (see
Figure 8-6
) to complete the configuration procedure.
The VPN Policies menu below displays showing that the new tunnel is enabled.
Figure 8-8:
VPN Policies
To view or modify the tunnel settings, select the radio button next to the tunnel entry and click
Edit.
1 hour
Page 118 / 268
Reference Manual for the Model Wireless ADSL Firewall Router DG834G
8-12
Virtual Private Networking (Advanced Feature)
202-10006-05, June 2005
Note
: Refer to
“Using Auto Policy to Configure VPN Tunnels” on page 8-36
to enable the IKE
keepalive capability on an existing VPN tunnel.
Step 2: Configuring the NETGEAR ProSafe VPN Client on the
Remote PC
This procedure describes how to configure the NETGEAR ProSafe VPN Client. We will assume
the PC running the client has a dynamically assigned IP address.
The PC must have the NETGEAR ProSafe VPN Client program installed that supports IPSec. Go
to the NETGEAR website (
) and select VPN01L_VPN05L in the Product
Quick Find drop-down menu for information on how to purchase the NETGEAR ProSafe VPN
Client.
1.
Install the NETGEAR ProSafe VPN Client on the remote PC and reboot.
You may need to insert your Windows CD to complete the installation.
If you do not have a modem or dial-up adapter installed in your PC, you may see the
warning message stating “The NETGEAR ProSafe VPN Component requires at least one
dial-up adapter be installed.” You can disregard this message.
Install the IPSec Component. You may have the option to install either the VPN Adapter
or the IPSec Component or both. The VPN Adapter is not necessary.
The system should show the ProSafe icon (
) in the system tray after rebooting.
Double-click the system tray icon to open the Security Policy Editor.
2.
Add a new connection.
Run the NETGEAR ProSafe Security Policy Editor program and, using the
“VPN Tunnel
Configuration Worksheet” on page 8-8
, create a VPN Connection.
From the Edit menu of the Security Policy Editor, click Add, then Connection. A “New
Connection” listing appears in the list of policies. Rename the “New Connection” so that it
matches the Connection Name you entered in the VPN Settings of the DG834G on LAN
A.
Note:
Before installing the NETGEAR ProSafe VPN Client software, be sure to turn off
any virus protection or firewall software you may be running on your PC.
Page 119 / 268
Reference Manual for the Model Wireless ADSL Firewall Router DG834G
Virtual Private Networking (Advanced Feature)
8-13
202-10006-05, June 2005
Note:
In this example, the Connection Name used on the client side of the VPN tunnel is
toDG834
and it does not have to match the
RoadWarrior
Connection Name used on the
gateway side of the VPN tunnel (see
Figure 8-5
) because Connection Names are arbitrary
to how the VPN tunnel functions.
Tip:
Choose Connection Names that make sense to the people using and administrating
the VPN.
Figure 8-9:
Security Policy Editor New Connection
Figure 8-10:
Security Policy Editor Connection Settings
Select the Secure in the Connection Security check box.
Select IP
Subnet in the ID Type menu.
Page 120 / 268
Reference Manual for the Model Wireless ADSL Firewall Router DG834G
8-14
Virtual Private Networking (Advanced Feature)
202-10006-05, June 2005
In this example, type
192.168.3.1
in the Subnet field as the network address of the
DG834G.
Enter
255.255.255.0
in the Mask field as the LAN Subnet Mask of the DG834G.
Select All in the Protocol menu to allow all traffic through the VPN tunnel.
Select the Connect using Secure Gateway Tunnel check box.
Select IP
Address in the ID Type menu below the check box.
Enter the public WAN IP Address of the DG834G in the field directly below the ID Type
menu. In this example,
22.23.24.25
would be used.
The resulting Connection Settings are shown in
Figure 8-10
.
3.
Configure the Security Policy in the NETGEAR ProSafe VPN Client software.
In the Network Security Policy list, expand the new connection by double clicking its
name or clicking on the “+” symbol. My Identity and Security Policy subheadings appear
below the connection name.
Click on the Security Policy subheading to show the Security Policy menu.
Figure 8-11:
Security Policy Editor Security Policy
Select the Main Mode in the Select Phase 1 Negotiation Mode check box.
4.
Configure the VPN Client Identity.
In this step, you will provide information about the remote VPN client PC. You will need to
provide:
The Pre-Shared Key that you configured in the DG834G.
Either a fixed IP address or a “fixed virtual” IP address of the VPN client PC.

Rate

3.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top