Page 191 / 414 Scroll up to view Page 186 - 190
Virtual Private Networking Using IPSec and L2TP Connections
191
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
Figure 105.
To view the wizard default settings, click the
VPN Wizard default values
option arrow
in
the upper right of the screen. A pop-up screen displays (see the following figure),
showing the wizard default values. The default values are the same for IPv4 and IPv6.
Page 192 / 414
Virtual Private Networking Using IPSec and L2TP Connections
192
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
Figure 106.
2.
Complete the settings as explained in the following table:
Table 41.
IPSec VPN Wizard settings for an IPv4 gateway-to-gateway tunnel
Setting
Description
About VPN Wizard
This VPN tunnel will connect
to the following peers
Select the
Gateway
radio button. The local WAN port’s IP address or
Internet name displays in the End Point Information section of the screen.
Connection Name and Remote IP Type
What is the new Connection
Name?
Enter a descriptive name for the connection. This name is used to help you
to manage the VPN settings; the name is not supplied to the remote VPN
endpoint.
What is the pre-shared key?
Enter a pre-shared key. The key needs to be entered both here and on the
remote VPN gateway. This key needs to have a minimum length of
8 characters and should not exceed 49 characters.
End Point Information
a
What is the Remote WAN’s IP
Address or Internet Name?
Enter the IPv4 address or Internet name (FQDN) of the WAN interface on
the remote VPN tunnel endpoint.
What is the Local WAN’s IP
Address or Internet Name?
When you select the Gateway radio button in the About VPN Wizard
section of the screen, the IPv4 address of the wireless VPN firewall’s active
WAN interface is automatically entered.
Page 193 / 414
Virtual Private Networking Using IPSec and L2TP Connections
193
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
Tip:
To ensure that tunnels stay active, after completing the wizard, manually
edit the VPN policy to enable keep-alives, which periodically sends ping
packets to the host on the peer side of the network to keep the tunnel
alive. For more information, see
Configure Keep-Alives
on page 254.
Tip:
For DHCP WAN configurations, first set up the tunnel with IP addresses.
After you have validated the connection, you can use the wizard to
create new policies using the FQDN for the WAN addresses.
3.
Click
Apply
to save your settings. The IPSec VPN policy is now added to the List of VPN
Policies table on the VPN Policies screen for IPv4. By default, the VPN policy is enabled.
Figure 107.
4.
Configure a VPN policy on the remote gateway that allows connection to the wireless VPN
firewall.
5.
Activate the IPSec VPN connection:
a.
Select
VPN > Connection Status
.
The Connection Status submenu tabs display with
the IPSec VPN Connection Status screen in view:
Secure Connection Remote Accessibility
What is the remote LAN IP
Address?
Enter the LAN IPv4 address of the remote gateway.
Note:
The remote LAN IPv4 address needs to be in a different subnet from
the local LAN IP address. For example, if the local subnet is 192.168.1.x,
then the remote subnet could be 192.168.10.x but could not be
192.168.1.x. If this information is incorrect, the tunnel fails to connect.
What is the remote LAN
Subnet Mask?
Enter the LAN subnet mask for the remote gateway.
a. Both local and remote endpoints should be defined as either FQDNs or IP addresses. A combination of
an IP address and an FQDN is not supported.
Table 41.
IPSec VPN Wizard settings for an IPv4 gateway-to-gateway tunnel (continued)
Setting
Description
Page 194 / 414
Virtual Private Networking Using IPSec and L2TP Connections
194
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
Figure 108.
b.
Locate the policy in the table, and click the
Connect
table button. The IPSec VPN
connection becomes active.
Note:
When using FQDNs, if the Dynamic DNS service is slow to update
its servers when your DHCP WAN address changes, the VPN tunnel
will fail because the FQDNs do not resolve to your new address. If
you have the option to configure the update interval, set it to an
appropriately short time.
Create an IPv6 Gateway-to-Gateway VPN Tunnel with the
Wizard
Figure 109.
To set up an IPv6 gateway-to-gateway VPN tunnel using the VPN Wizard:
1.
Select
VPN > IPSec VPN > VPN Wizard
.
2.
In the upper right of the screen, select the
IPv6
radio button. The VPN Wizard screen
displays the IPv6 settings. (The following screen contains some examples that do not relate
to other examples in this manual.)
Page 195 / 414
Virtual Private Networking Using IPSec and L2TP Connections
195
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
Figure 110.
To view the wizard default settings, click the
VPN Wizard default values
option arrow
in
the upper right of the screen. A pop-up screen displays (see the following figure),
showing the wizard default values. The default values are the same for IPv4 and IPv6.

Rate

4.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top