Page 201 / 414 Scroll up to view Page 196 - 200
Virtual Private Networking Using IPSec and L2TP Connections
201
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
Figure 116.
Note:
When you are using FQDNs, if the Dynamic DNS service is slow to
update its servers when your DHCP WAN address changes, the
VPN tunnel will fail because the FQDNs do not resolve to your new
address. If you have the option to configure the update interval, set it
to an appropriately short time.
4.
Optional step: Collect the information that you need to configure the VPN client. You can
print the following table to help you keep track of this information.
Use the NETGEAR VPN Client Wizard to Create a Secure Connection
The VPN client lets you set up the VPN connection manually (see
Manually Create a Secure
Connection Using the NETGEAR VPN Client
on page 206) or with the integrated
Configuration Wizard, which is the easier and preferred method. The Configuration Wizard
configures the default settings and provides basic interoperability so that the VPN client can
easily communicate with the wireless VPN firewall (or third-party VPN devices). The
Configuration Wizard does not let you enter the local and remote IDs, so you need to
manually enter this information.
Table 44.
Information required to configure the VPN client
Component
Enter the information that you collected
Example
Pre-shared key
I7!KL39dFG_8
Remote identifier information
remote.com
Local identifier information
local.com
Router’s LAN network IPv4 address
192.168.1.0
Router’s WAN IPv4 address
192.168.15.175
Page 202 / 414
Virtual Private Networking Using IPSec and L2TP Connections
202
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
Note:
Perform these tasks from a computer that has the NETGEAR
ProSafe VPN Client installed. The VPN Client supports IPv4 only; an
upcoming release of the VPN Client will support IPv6.
To use the Configuration Wizard to set up a VPN connection between the VPN client
and the wireless VPN firewall:
1.
Right-click the VPN client icon in your Windows system tray, and select
Configuration
Panel
. The Configuration Panel screen displays:
Figure 117.
2.
From the main menu on the Configuration Panel screen, select
Configuration > Wizard
.
The Choice of the remote equipment wizard screen (screen 1 of 3) displays:
Page 203 / 414
Virtual Private Networking Using IPSec and L2TP Connections
203
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
Figure 118.
3.
Select the
A router or a VPN gateway
radio button, and click
Next
. The VPN tunnel
parameters wizard screen (screen 2 of 3) displays:
Figure 119.
4.
Specify the following VPN tunnel parameters:
IP or DNS public (external) address of the remote equipment
. Enter the remote IP
address or DNS name of the wireless VPN firewall. For example, enter
192.168.15.175
.
Preshared key
. Enter the pre-shared key that you already specified on the wireless
VPN firewall. For example, enter
I7!KL39dFG_8
.
IP private (internal) address of the remote network
. Enter the remote private IP
address of the wireless VPN firewall. For example, enter
192.168.1.0
. This IP address
enables communication with the entire 192.168.1.x subnet.
Page 204 / 414
Virtual Private Networking Using IPSec and L2TP Connections
204
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
5.
Click
Next
.
The Configuration Summary wizard screen (screen 3 of 3) displays:
Figure 120.
6.
This screen is a summary screen of the
new VPN configuration.
Click
Finish
.
7.
Specify the local and remote IDs:
a.
In the tree list pane of the Configuration Panel screen, click
Gateway
(the default
name given to the authentication phase). The Authentication pane displays in the
Configuration Panel screen, with the Authentication tab selected by default.
b.
Click the
Advanced
tab in the Authentication pane. The Advanced pane displays:
Figure 121.
Page 205 / 414
Virtual Private Networking Using IPSec and L2TP Connections
205
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
c.
Specify the settings that are explained in the following table.
8.
Configure the global parameters:
a.
Click
Global Parameters
in the left column
of the Configuration Panel screen.
The
Global Parameters pane displays in the
Configuration Panel screen:
Table 45.
VPN client advanced authentication settings
Setting
Description
Advanced features
Aggressive Mode
Select this check box to enable aggressive mode as the mode of negotiation
with the wireless VPN firewall.
NAT-T
Select
Automatic
from the drop-down list to enable the VPN client and
wireless VPN firewall to negotiate NAT-T.
Local and Remote ID
Local ID
As the type of ID, select
DNS
from the Local ID drop-down list because you
specified FQDN in the wireless VPN firewall configuration.
As the value of the ID, enter
remote.com
as the local ID for the VPN client.
Note:
The remote ID on the wireless VPN firewall is the local ID on the VPN
client. It might be less confusing to configure an FQDN such as client.com as
the remote ID on the wireless VPN firewall and then enter client.com as the
local ID on the VPN client.
Remote ID
As the type of ID, select
DNS
from the Remote ID drop-down list because
you specified an FQDN in the wireless VPN firewall configuration.
As the value of the ID, enter
local.com
as the remote ID for the wireless
VPN firewall.
Note:
The local ID on the wireless VPN firewall is the remote ID on the VPN
client. It might be less confusing to configure an FQDN such as router.com
as the local ID on the wireless VPN firewall and then enter router.com as the
remote ID on the VPN client.

Rate

4.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top