Page 211 / 414 Scroll up to view Page 206 - 210
Virtual Private Networking Using IPSec and L2TP Connections
211
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
Figure 127.
3.
Specify the settings that are explained in the following table.
Table 48.
VPN client IPSec configuration settings
Setting
Description
VPN Client address
Either enter
0.0.0.0
as the IP address, or enter a virtual IP address that is used by
the VPN client in the wireless VPN firewall’s LAN; the computer (for which the VPN
client opened a tunnel) appears in the LAN with this IP address.
Address Type
Select
Subnet address
from the drop-down list. This selection defines which
addresses the VPN client can communicate with after the VPN tunnel is
established.
Remote LAN address
Enter
192.168.1.0
as the remote IP address (that is, LAN network address) of the
gateway that opens the VPN tunnel.
Subnet mask
Enter
255.255.255.0
as the remote subnet mask of the gateway that opens the VPN
tunnel.
ESP
Encryption
Select
3DES
as the encryption algorithm from the drop-down list.
Authentication
Select
SHA-1
as the authentication algorithm from the drop-down
list.
Mode
Select
Tunnel
as the encapsulation mode from the drop-down list.
PFS and Group
Select the
PFS
check box, and then select the
DH2 (1024)
key group from the
drop-down list.
Note:
On the wireless VPN firewall, this key group is referred to as Diffie-Hellman
Group 2 (1024 bit).
Page 212 / 414
Virtual Private Networking Using IPSec and L2TP Connections
212
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
4.
Click
Apply
to use the new settings immediately, and click
Save
to keep the settings for
future use.
Configure the Global Parameters
To specify the global parameters:
1.
Click
Global Parameters
in the left column
of the Configuration Panel screen.
The
Global Parameters pane displays in the
Configuration Panel screen:
Figure 128.
2.
Specify the default lifetimes in seconds:
Authentication (IKE)
,
Default
. The default lifetime value is 3600 seconds. Change
this setting to
28800
seconds to match the configuration of the wireless VPN firewall.
Encryption (IPSec)
,
Default
. The default lifetime value is 1200 seconds. Change this
setting to
3600
seconds to match the configuration of the wireless VPN firewall.
3.
Click
Apply
to use the new settings immediately, and click
Save
to keep the settings for
future use.
The wireless VPN firewall configuration is now complete.
Page 213 / 414
Virtual Private Networking Using IPSec and L2TP Connections
213
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
Test the Connection and View Connection and Status
Information
Both the NETGEAR ProSafe VPN Client and the wireless VPN firewall provide VPN
connection and status information. This information is useful for verifying the status of a
connection and troubleshooting problems with a connection.
Test the NETGEAR VPN Client Connection
There are many ways to establish a connection. The following procedures assume that you
use the default authentication phase name
Gateway
and the default IPSec configuration
name
Tunnel
. If you manually set up the connection and changed the names, use
vpn_client
(or any other name that you have configured) as the authentication phase name and
netgear_platform
(or any other name that you have configured) as the IPSec configuration
name.
To establish a connection, use one of the following three methods:
Use the Configuration Panel screen
. In the tree list pane of the Configuration Panel
screen, perform
one
of the following tasks:
-
Click the
Tunnel
IPSec configuration name, and press
Ctrl+O.
-
Right-click the
Tunnel
IPSec configuration name, and select
Open tunnel
.
Figure 129.
Use the Connection Panel screen
. On the main menu of the Configuration Panel
screen, select
Tools > Connection Panel
to open the Connection Panel screen. Perform
one
of the following tasks:
-
Double-click
Gateway-Tunnel
.
-
Right-click
Gateway-Tunnel
, and select
Open tunnel
.
-
Click
Gateway-Tunnel
, and press
Ctrl+O
.
Figure 130.
Page 214 / 414
Virtual Private Networking Using IPSec and L2TP Connections
214
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
Use the system-tray icon
. Right-click the system tray icon, and select
Open tunnel
‘Tunnel’
.
Figure 131.
Whichever way you choose to open the tunnel, when the tunnel opens successfully, the
Tunnel opened
message displays above the system tray:
Figure 132.
Once launched, the VPN client displays an icon in the system tray that indicates whether or
not a tunnel is opened, using a color code:
Figure 133.
Purple icon:
no VPN tunnel opened
Green icon:
at least one VPN tunnel opened
Page 215 / 414
Virtual Private Networking Using IPSec and L2TP Connections
215
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
NETGEAR VPN Client Status and Log Information
To view detailed negotiation and error information on the NETGEAR VPN client:
Right-click the VPN client icon in the system tray, and select
Console
. The VPN Client
Console Active screen displays:
Figure 134.
View the Wireless VPN Firewall IPSec VPN Connection Status
To view the status of current IPSec VPN tunnels, select
VPN > Connection Status
.
The
Connection Status submenu tabs display with the IPSec VPN Connection Status screen in
view. (The following figure shows an IPSec SA as an example.)
Figure 135.

Rate

4.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top