Page 106 / 185 Scroll up to view Page 101 - 105
Virtual Private Networking
106
N600 Wireless Dual Band Gigabit ADSL2+ Modem Router DGND3700
2.
On the main menu, select
VPN Status
. The VPN Status/Log screen displays:
3.
Click
VPN Status
to display the Current VPN Tunnels (SAs) screen:
4.
Click
Connect
for the VPN tunnel that you want to activate.
Activate the VPN Tunnel by Pinging the Remote Endpoint
Note:
This section uses 192.168.3.1 for a sample remote endpoint LAN IP
address.
To activate the VPN tunnel by pinging the remote endpoint (for example, 192.168.3.1),
perform the following steps depending on whether your configuration is client-to-gateway or
gateway-to-gateway:
Client-to-gateway configuration
. To check the VPN connection, you can initiate a
request from the remote PC to the N600 Wireless Dual Band Gigabit ADSL2+ Modem
Router DGND3700’s network by using the Connect option in the NETGEAR ProSafe
Downloaded from
www.Manualslib.com
manuals search engine
Page 107 / 185
Virtual Private Networking
107
N600 Wireless Dual Band Gigabit ADSL2+ Modem Router DGND3700
menu bar. The NETGEAR ProSafe client reports the results of the attempt to connect.
Since the remote PC has a dynamically assigned WAN IP address, it has to initiate the
request.
To perform a ping test using our example, start from the remote PC:
a.
Establish an Internet connection from the PC.
b.
On the Windows taskbar, click the
Start
button, and then select
Run
.
c.
Type
ping -t 192.168.3.1
,
and then click
OK
.
Running a ping test
to the LAN from the PC
This causes a continuous ping to be sent to the first N600 Wireless Dual Band Gigabit
ADSL2+ Modem Router DGND3700. Within 2 minutes, the ping response should
change from
timed out
to
reply
.
Note:
You can use
Ctrl-C
to stop the pinging.
Once the connection is established, you can open a browser on the PC and enter the
LAN IP address of the remote N600 Wireless Dual Band Gigabit ADSL2+ Modem Router
DGND3700. After a short wait, you should see the login screen of the wireless modem
router (unless another PC already has the N600 Wireless Dual Band Gigabit ADSL2+
Modem Router DGND3700 management interface open).
Gateway-to-gateway configuration
. Test the VPN tunnel by pinging the remote network
from a PC attached to Gateway A (the wireless modem router).
a.
Open a command prompt (for example,
Start > Run > cmd
).
b.
Type
ping 192.168.3.1
.
Downloaded from
www.Manualslib.com
manuals search engine
Page 108 / 185
Virtual Private Networking
108
N600 Wireless Dual Band Gigabit ADSL2+ Modem Router DGND3700
Note:
The pings might fail the first time. If they do, then try the pings a
second time.
Start Using a VPN Tunnel to Activate It
To use a VPN tunnel, use a web browser to go to a URL whose IP address or range is
covered by the policy for that VPN tunnel.
Verify the Status of a VPN Tunnel
To use the VPN Status screen to determine the status of a VPN tunnel:
1.
Log in to the wireless modem router.
2.
On the main menu, select
VPN Status
to display the VPN Status/Log screen.
This log shows the details of recent VPN activity, including the building of the VPN tunnel.
If there is a problem with the VPN tunnel, refer to the log for information about what might
be the cause of the problem.
Click
Refresh
to see the most recent entries.
Click
Clear Log
to delete all log entries.
Downloaded from
www.Manualslib.com
manuals search engine
Page 109 / 185
Virtual Private Networking
109
N600 Wireless Dual Band Gigabit ADSL2+ Modem Router DGND3700
3.
On the VPN Status/Log screen, click
VPN Status
to display the Current VPN Tunnels (SAs)
screen.
This table lists the following data for each active VPN tunnel.
SPI
. Each SA has a unique SPI (security parameter index) for traffic in each direction.
For manual key exchange, the SPI is specified in the policy definition. For automatic
key exchange, the SPI is generated by the IKE protocol.
Policy Name
. The VPN policy associated with this SA.
Remote Endpoint
. The IP address on the remote VPN endpoint.
Action
. Either a
Drop
or a
Connect
button.
SLifeTime (Secs)
. The remaining soft lifetime for this security association (SA) in
seconds. When the soft lifetime becomes 0 (zero), the SA is renegotiated.
HLifeTime (Secs)
. The remaining hard lifetime for this SA in seconds. When the hard
lifetime becomes 0 (zero), the SA is terminated. (It is reestablished if required.)
Deactivate a VPN Tunnel
Sometimes you need to deactivate a VPN tunnel for testing purposes. You can deactivate a
VPN tunnel from two places:
Policy table on VPN Policies screen
VPN Status screen
Use the Policy Table on the VPN Policies Screen to Deactivate a VPN Tunnel
To deactivate a VPN tunnel:
1.
Log in to the wireless modem router.
Downloaded from
www.Manualslib.com
manuals search engine
Page 110 / 185
Virtual Private Networking
110
N600 Wireless Dual Band Gigabit ADSL2+ Modem Router DGND3700
2.
On the main menu, select
VPN Policies
to display the VPN Policies screen:
3.
In the Policy Table, clear the
Enable
check box for the VPN tunnel that you want to
deactivate, and then click
Apply
. (To reactivate the tunnel, select the
Enable
check box, and
then click
Apply
.)
Use the VPN Status Screen to Deactivate a VPN Tunnel
To deactivate a VPN tunnel:
1.
Log in to the wireless modem router.
2.
On the main menu, select
VPN Policies
to display the VPN Policies screen:
Downloaded from
www.Manualslib.com
manuals search engine

Rate

4.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top