Page 91 / 157 Scroll up to view Page 86 - 90
Wireless ADSL2+ Modem Router DG834Gv5 User Manual
Virtual Private Networking
6-13
v1.0, March 2010
a.
In the Network Security Policy list on the left side of the Security Policy Editor window,
click
My Identity
.
b.
In the
Select Certificate
drop-down list, select
None
.
c.
Select
IP Address
in the
ID Type
drop-down list. If you are using a virtual fixed IP
address, enter this address in the
Internal Network IP Address
field. Otherwise, leave
this field empty.
d.
In the Internet Interface section of the screen, select the adapter that you use to access the
Internet. If you have a dial-up Internet account, select
PPP Adapter
in the
Name
field. If
you have a dedicated cable or DSL line, select your Ethernet adapter. If you will be
switching between adapters or if you have only one adapter, select
Any
.
e.
In the My Identity section of the screen, click the
Pre-Shared Key
button. The Pre-Shared
Key screen displays:
Figure 6-11
Figure 6-12
Page 92 / 157
Wireless ADSL2+ Modem Router DG834Gv5 User Manual
6-14
Virtual Private Networking
v1.0, March 2010
f.
Click
Enter Key
. Enter the DG834G v5 pre-shared key, and then click
OK
. In this
example,
12345678
is entered. This field is case-sensitive.
5.
Configure the VPN Client Authentication Proposal.
In this step, you provide the type of encryption (DES or 3DES) to be used for this connection.
This selection must match your selection in the DG834G v5 configuration.
a.
In the
Network Security Policy
list on the left side of the Security Policy Editor window,
expand the Security Policy heading by double-clicking its name or clicking the + symbol.
b.
Expand the Authentication subheading by double clicking its name or clicking the +
symbol. Then select
Proposal 1
below Authentication.
c.
In the Authentication Method drop-down list, select
Pre-Shared key
.
d.
In the
Encrypt Alg
drop-down list, select the type of encryption that is configured for the
Encryption Protocol in the DG834G v5 in
Table 6-3 on page 6-6
. In this example, use
Triple DES.
e.
In the
Hash Alg
drop-down list, select
SHA-1
.
f.
In the
SA Life
drop-down list, select
Unspecified
.
g.
In the
Key Group
drop-down list, select
Diffie-Hellman Group 2
.
6.
Configure the VPN client key exchange proposal.
Figure 6-13
Page 93 / 157
Wireless ADSL2+ Modem Router DG834Gv5 User Manual
Virtual Private Networking
6-15
v1.0, March 2010
In this step, you provide the type of encryption (DES or 3DES) to be used for this connection.
This selection must match your selection in the DG834G v5 configuration.
a.
Expand the Key Exchange subheading by double-clicking its name or clicking the +
symbol. Then select
Proposal 1
below Key Exchange.
b.
In the
SA Life
drop-down list, select
Unspecified
.
c.
In the
Compression
drop-down list, select
None
.
d.
Select the
Encapsulation Protocol (ESP)
check box.
e.
In the
Encrypt Alg
drop-down list, select the type of encryption that is configured for the
Encryption Protocol in the DG834G v5 in
Table 6-3 on page 6-6
. In this example, use
Triple DES.
f.
In the
Hash Alg
drop-down list, select
SHA-1
.
g.
In the
Encapsulation
drop-down list, select
Tunnel
.
h.
Leave the
Authentication Protocol (AH)
check box cleared.
7.
Save the VPN Client Settings.
In the Security Policy Editor window, select File > Save.
After you have configured and saved the VPN client information, your PC automatically
opens the VPN connection when you attempt to access any IP addresses in the range of the
remote VPN router’s LAN.
Figure 6-14
Page 94 / 157
Wireless ADSL2+ Modem Router DG834Gv5 User Manual
6-16
Virtual Private Networking
v1.0, March 2010
8.
Check the VPN connection.
To check the VPN Connection, you can initiate a request from the remote PC to the DG834G
v5 modem router’s network by using the Connect option in the NETGEAR ProSafe menu bar.
The NETGEAR ProSafe client reports the results of the attempt to connect. Since the remote
PC has a dynamically assigned WAN IP address, it must initiate the request.
To perform a ping test using our example, start from the remote PC:
a.
Establish an Internet connection from the PC.
b.
On the Windows taskbar, click the
Start
button, and then click
Run
.
c.
Type
ping -t 192.168.3.1
, and then click
OK
.
This causes a continuous ping to be sent to the first DG834G v5. After between several
seconds and two minutes, the ping response should change from
timed out
to
reply
.
Once the connection is established, you can open a browser on the PC and enter the LAN IP
address of the remote DG834G v5. After a short wait, you should see the login screen of the
modem router (unless another PC already has the DG834G v5 management interface open).
You can view information about the progress and status of the VPN client connection by
opening the NETGEAR ProSafe Log Viewer.
Figure 6-15
Figure 6-16
Page 95 / 157
Wireless ADSL2+ Modem Router DG834Gv5 User Manual
Virtual Private Networking
6-17
v1.0, March 2010
To launch this function, click the Windows
Start
button, then select Programs > NETGEAR
ProSafe VPN Client > Log Viewer. The Log Viewer screen for a successful connection is
shown in the following figure:
9.
The Connection Monitor screen for this connection is shown in the following figure:
In this example you can see these settings:
The DG834G v5 has a GW Address (public IP WAN address) of 22.23.24.25.
The DG834G v5 has a Remote Address (LAN IP address) of 192.168.3.1.
The VPN client PC has a Local Address (dynamically assigned address) of 192.168.2.2.
Figure 6-17
Note:
Use the active VPN tunnel information and pings to determine whether a failed
connection is due to the VPN tunnel or some reason outside the VPN tunnel.
Figure 6-18

Rate

3.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top