Page 111 / 126 Scroll up to view Page 106 - 110
111
GlobeSurfer
®
II 1.8 - 7.2 - 7.2 S
REFERENCE MANUAL
h.
Under the ‘Connection Type’ tab, verify that ‘All network connections’ is selected.
i.
Click the ‘Apply’ button and then click the ‘OK’ button to save this rule.
5.
Configuring Individual Rule of Tunnel 2 (GlobeSurfer
®
II to Windows XP):
a.
Under the ‘IP Filter List’ tab of the ‘New Rule Properties’ window, select the ‘GlobeSurfer
®
II to
Windows XP’ radio button (see Figure 6.92).
Figure 6.92 IP Filter List
b.
Click the ‘Filter Action’ tab (see Figure 6.88).
c.
Select the ‘Require Security’ radio button, and click the ‘Edit’ button. The ‘Require Security
Properties’ window will appear (see Figure 6.89).
d.
Verify that the ‘Negotiate security’ option is enabled, and deselect the ‘Accept unsecured
communication, but always respond using IPSec’ check box. Select the ‘Session key Perfect
Forward Secrecy (PFS)’ (the PFS option must be enabled on GlobeSurfer
®
II), and click the OK
button.
e.
Under the ‘Authentication Methods’ tab, click the Edit button. The ‘Edit Authentication Method
Properties’ window will appear (see Figure 6.90).
f.
Select the ‘Use this string (preshared key)’ radio button, and enter a string that will be used as
the key (for example, 1234). Click the ‘OK’ button.
g.
Under the ‘Tunnel Setting’ tab, select the ‘The tunnel endpoint is specified by this IP Address’
radio button, and enter <windows ip> (see Figure 6.93).
Figure 6.93 Tunnel settings
h. Under the ‘Connection Type’ tab, verify that ‘All network connections’ is selected.
i. Click the ‘Apply’ button and then click the ‘OK’ button to save this rule.
j. Back on the ‘GlobeSurfer
®
II Connection Properties’ window, note that the two new rules have
been added to the ‘IP Security rules’ list (see Figure 6.94).
Figure 6.94 IP Security rules
Click ‘Close’ to go back to the ‘Local Security Settings’ window (see Figure 6.77).
Page 112 / 126
112
GlobeSurfer
®
II 1.8 - 7.2 - 7.2 S
REFERENCE MANUAL
6.
Assigning the New IPSec Policy:
In the ‘Local Security Settings’ window, right-click the ‘GlobeSurfer
®
II Connection’ policy, and
select ‘Assign’. A small green arrow will appear on the policy’s folder icon and its status under the
‘Policy Assigned’ column will change to ‘Yes’ (see Figure 6.95).
Figure 6.95 Local Security Settings
6.6.13 L2TP server
GlobeSurfer
®
II can act as a Layer 2 Tunneling Protocol Server (L2TP Server), accepting L2TP client connection requests.
6.6.13.1 Configuring the L2TP Server
Access the Layer 2 Tunneling Protocol Server (L2TP Server) settings by clicking the ‘L2TP server’ icon in the
‘Advanced’ screen. The ‘Layer 2 Tunneling Protocol Server (L2TP Server)’ screen will appear (see Figure 6.96).
Figure 6.96 Layer 2 Tunneling Protocol Server (L2TP Server)
This screen enables you to configure the following:
‘Enabled’
Check or un-check this box to enable or disable this feature. Note that checking this box creates an L2TP server (if
not yet created with the wizard), but does not define remote users.
‘Users’
Click this link to define the remote users that will be granted access to your home network. The ‘Users’ screen will
appear (see Figure 6.19). Please refer to section 6.5.10 to learn how to define and configure users.
‘Protect L2TP Connection by IPSec’
By default, the L2TP connection is protected by the IP Security (IPSec) protocol (the option is checked). You may
uncheck this option to disable this feature.
‘L2TP Server IPSec Shared Secret’
You may change the IPSec shared secret, provided when the connection was created, in this field.
‘Remote Address Range’
Use the ‘Start IP Address’ and ‘End IP Address’ fields to specify the range of IP addresses that will be granted by
the L2TP server to the L2TP client.
Page 113 / 126
113
GlobeSurfer
®
II 1.8 - 7.2 - 7.2 S
REFERENCE MANUAL
6.6.13.2 Advanced L2TP Server Settings
To configure advanced L2TP server settings press the ‘Advanced’ button on the L2TP screen (see Figure 6.96).
The screen will expand, offering additional settings (see Figure 6.97).
Figure 6.97 Advanced L2TP Server Parameters
‘L2TP Shared Secret (optional)’
Use this optional field to define a shared secret for the L2TP connection, for added security.
‘Maximum Idle Time to Disconnect in Seconds’
Specify the amount of idle time (during which no data is sent or received) that should elapse before the gateway
disconnects a L2TP connection.
‘Authentication Required’
Select whether L2TP will use authentication.
‘Allowed Authentication’
Algorithms Select the algorithms the server may use when authenticating its clients.
‘Encryption Required’
Select whether L2TP will use encryption.
‘Allowed Encryption Algorithms’
Select the algorithms the server may use when encrypting data.
‘MPPE Encryption Mode’
Select the Microsoft Point-to-Point Encryption mode: stateless or stateful.
Please note that the server settings must be in tune with the client settings.
6.6.14 PPTP server
GlobeSurfer
®
II can act as a Point-to-Point Tunneling Protocol Server (PPTP Server), accepting PPTP client connection
requests.
Page 114 / 126
114
GlobeSurfer
®
II 1.8 - 7.2 - 7.2 S
REFERENCE MANUAL
6.6.14.1 Configuring the PPTP Server
Access the Point-to-Point Tunneling Protocol Server (PPTP Server) settings by clicking the ‘PPTP’ icon in the
‘Advanced’ screen. The ‘Point-to-Point Tunneling Protocol Server (PPTP Server)’ screen will appear (see Figure 6.98).
Figure 6.98 Point-to-point Tunneling Protocol Server (PPTP Server)
This screen enables you to configure:
‘Enabled’
Check or uncheck this box to enable or disable the PPTP server, respectively.
Note that checking this box creates a PPTP server (if not created yet with the wizard), but does not define remote
users.
‘Users’
Click this link to define the remote users that will be granted access to your home network. The ‘Users’ screen will
appear. Please refer to section 6.5.10 to learn how to define and configure users.
‘Remote Address Range’
Use the ‘Start IP Address’ and ‘End IP Address’ fields to specify the range of IP addresses that will be granted by
the PPTP server to the PPTP client.
6.6.14.2 Advanced PPTP Server Settings
To configure advanced PPTP server settings press the ‘Advanced’ button on the PPTP screen (see Figure 6.98).
The screen will expand, offering additional settings (see Figure 6.99).
Figure 6.99 Advanced PPTP Server Parameters
Page 115 / 126
115
GlobeSurfer
®
II 1.8 - 7.2 - 7.2 S
REFERENCE MANUAL
‘Maximum Idle Time to Disconnect in Seconds’
Specify the amount of idle time (during which no data is sent or received) that should elapse before the gateway
disconnects a PPTP connection.
‘Authentication Required’
Select whether PPTP will use authentication. Allowed Authentication Algorithms Select the algorithms the server
may use when authenticating its clients.
‘Encryption Required’
Select whether PPTP will use encryption. Allowed Encryption Algorithms Select the algorithms the server may use
when encrypting data.
‘MPPE Encryption Mode’
Select the Microsoft Point-to-Point Encryption mode: stateless or stateful.
Please note that the server settings must be in tune with the client settings.
6.6.15 Protocols
The Protocols feature incorporates a list of preset and user-defined applications and common port settings. You can use
protocols in various security features such as Access Control and Port Forwarding. You may add new protocols to support new
applications or edit existing ones according to your needs. To view the protocols list, click the ‘Protocols’ icon in the ‘Advanced’
screen. The ‘Protocols’ screen will appear (see Figure 6.100)
Figure 6.100 Protocols
To define a protocol:
1. Click the ‘Protocols’ icon in the ‘Advanced’ screen. The ‘Protocols’ screen will appear (see Figure 6.100).
2. Click the ‘New Entry’ link, the ‘Edit Service’ screen will appear (see gure 8.5).

Rate

4 / 5 based on 2 votes.

Popular Option Models

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top