Page 211 / 224 Scroll up to view Page 206 - 210
Model FVS328 ProSafe VPN Firewall with Dial Back-up Reference Manual
NETGEAR VPN Client to NETGEAR the FVS328
H-15
December 2003, M-10041-01
To test the connection to a computer connected to the FVS328, simply ping the IP address of
that computer.
Once connected, you can open a browser on the remote PC and enter the LAN IP Address of the
FVS328, which is http://192.168.0.1 in this example. After a short wait, you should see the login
screen of the FVS328.
From the FVS328 to the Client PC
You can use the FVS328 Diagnostic utilities to test the VPN connection from the FVS328 to the
client PC. Run ping tests from the Diagnostics link of the FVS328 main menu.
Monitoring the PC VPN Connection
Information on the progress and status of the VPN client connection can be viewed by opening the
Netgear ProSafe VPN Client Connection Monitor or Log Viewer. To launch these functions, click
on the Windows Start button, then select Programs, then Netgear ProSafe VPN Client, then either
the Connection Monitor or Log Viewer.
The Log Viewer screen for a successful connection is shown below:
Figure H-13:
Log Viewer screen
Page 212 / 224
Model FVS328 ProSafe VPN Firewall with Dial Back-up Reference Manual
H-16
NETGEAR VPN Client to NETGEAR the FVS328
December 2003, M-10041-01
A sample Connection Monitor screen for a different connection is shown below:
Figure H-14:
Connection Monitor screen
In this example the following connection options apply:
The FVS328 has a public IP WAN address of 66.120.188.153
The FVS328 has a LAN IP address of 192.168.0.1
The VPN client PC is behind a home NAT router and has a dynamically assigned address
of 192.168.0.3
While the connection is being established, the Connection Name field in this menu will say “SA”
before the name of the connection. When the connection is successful, the “SA” will change to the
yellow key symbol shown in the illustration above.
Viewing the FVS328 VPN Status and Log Information
Information on the status of the VPN client connection can be viewed by opening the FVS328
VPN Status screen. To view this screen, click the VPN Status link on the FVS328 main menu.
Page 213 / 224
Model FVS328 ProSafe VPN Firewall with Dial Back-up Reference Manual
NETGEAR VPN Client to NETGEAR the FVS328
H-17
December 2003, M-10041-01
The FVS328 VPN Status screen for a successful connection is shown below:
Figure H-15:
FVS328 VPN Status screen
Page 214 / 224
Model FVS328 ProSafe VPN Firewall with Dial Back-up Reference Manual
H-18
NETGEAR VPN Client to NETGEAR the FVS328
December 2003, M-10041-01
Page 215 / 224
December 2003, M-10041-01
Glossary
1
Glossary
10BASE-T
IEEE 802.3 specification for 10 Mbps Ethernet over twisted pair wiring.
100BASE-Tx
IEEE 802.3 specification for 100 Mbps Ethernet over twisted pair wiring.
3DES
3DES (Triple DES) achieves a high level of security by encrypting the data
three times using DES with three different, unrelated keys.
802.11b
IEEE specification for wireless networking at 11 Mbps using direct-sequence
spread-spectrum (DSSS) technology and operating in the unlicensed radio
spectrum at 2.5GHz.
AH
Authentication Header
CA
Certificate Authority. A trusted third-party organization or company that
issues digital certificates used to create digital signatures and public-private
key pairs. The role of the CA in this process is to guarantee that the individual
granted the unique certificate is, in fact, who he or she claims to be. Usually,
this means that the CA has an arrangement with a financial institution, such as
a credit card company, which provides it with information to confirm an
individual's claimed identity. CAs are a critical component in data security
and electronic
commerce because they guarantee that the two parties
exchanging information are really who they claim to be.
CRL
Certificate Revocation List. Each Certificate Authority (CA) maintains a
revoked certificates list.
Denial of Service
attack
DoS. A hacker attack designed to prevent your computer or network from
operating or communicating.
DES
The Data Encryption Standard (DES) processes input data that is 64 bits wide,
encrypting these values using a 56 bit key.
See
also 3DES.
Deffie Helman
Deffie Helman shared secret algorithm.Deffie Helman shared secret algorithm
is a method for securely exchanging a shared secret between two parties, in
real-time, over an untrusted network. A shared secret allows two parties, who
may not have ever communicated previously, to encrypt their
communications. As such, it is used by several protocols, including Secure
Sockets Layer (SSL) and Internet Protocol Security (IPSec).

Rate

3.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top