Page 116 / 169 Scroll up to view Page 111 - 115
116
5
Proposal
Method
ESP
Security Plan
Authentication
MD5
Encryption
3DES
Prefer
Forwar
MODP 1024(group2)
Pre-shared Key
123456
Branch Office Side:
Setup details: the same operation as done in Head Office side
Item
Function
Description
1
Connection Name B-to-H
Give a name for IPSec connection
2
Local Network
Subnet
Select Subnet
IP Address
192.168.0.0
Branch Office network
Netmask
255.255.255.0
3
Remote
Secure
Gateway
Address(Hostanme)
69.121.1.3
IP address of the Head office
router (on WAN side)
4
Remote Network
Subnet
Select Subnet
IP Address
192.168.1.0
Head office network
Netmask
255.255.255.0
5
Proposal
Method
ESP
Security Plan
Authentication
MD5
Encryption
3DES
Prefer
Forwar
MODP 1024(group2)
Pre-shared Key
123456
Page 117 / 169
117
2. Host to LAN
Router servers as VPN server, and host should install the IPSec client to connect to head office
through IPSec VPN.
Item
Function
Description
1
Connection Name Headoffice-to-Host
Give a name for IPSec connection
Local Network
Subnet
Select Subnet
Page 118 / 169
118
2
IP Address
192.168.1.0
Head Office network
Netmask
255.255.255.0
3
Remote
Secure
Gateway
(Hostanme)
69.121.1.30
IP address of the Branch office
router (on WAN side)
4
Remote Network
Single Address
69.121.1.30
Host
5
Proposal
Method
ESP
Security Plan
Authentication
MD5
Encryption
3DES
Prefer
Forwar
MODP 1024(group2)
Pre-shared Key
123456
VPN Account
PPTP and L2TP server share the same account database set in VPN Account page.
Name:
A user-defined name for the connection.
Tunnel:
Select Enable
to activate the account. PPTP2TP) server is waiting for the client to connect to
this account.
Username
: Please input the username for this account.
Password
: Please input the password for this account.
Connection Type
: Select Remote Access for single user, Select LAN to LAN for remote gateway.
Peer Network IP
: Please input the subnet IP for remote network.
Peer Netmask
: Please input the Netmask for remote network.
PPTP
The Point-to-Point Tunneling Protocol (PPTP) is a Layer2 tunneling protocol for implementing virtual
private networks through IP network. PPTP uses an enhanced GRE (Generic Routing Encapsulation)
mechanism to provide a flow- and congestion-controlled encapsulated datagram service for carrying
PPP packets.
In the Microsoft implementation, the tunneled PPP traffic can be authenticated with PAP, CHAP,
Microsoft CHAP V1/V2 or EAP-TLS. The PPP payload is encrypted using Microsoft Point-to-Point
Encryption (MPPE) when using MSCHAPv1/v2 or EAP-TLS.
Note: 4 sessions for Client and 4 sessions for Server respectively.
Page 119 / 169
119
PPTP Server
In PPTP session, users can set the basaic parameters(authentication, encyption, peer address, etc)
for PPTP Server, and accounts in the next page of PPTP Account. They both constitutes the PPTP
Server setting.
PPTP Funtion
: Select Enable to activate PPTP Server. Disable to deactivate PPTP Server function.
WAN Interface
: Select the exact WAN interface configured for the tunnel. Select Default to use the
now-working WAN interface for the tunnel.
Auth. Type:
The authentication type, Pap or Chap, PaP, Chap and MS-CHAPv2. When using PAP,
the password is sent unencrypted, whilst CHAP encrypts the password before sending, and also
allows for challenges at different periods to ensure that an intruder has not replaced the client. When
passed the authentication with MS-CHAPv2, the MPPE encryption is supported.
Encryption Key Length
: The data can be encrypted by MPPE algorithm with 40 bits or 128 bits.
Default is Auto, it is negotiated when establishing a connection. 128 bit keys provide stronger
encryption than 40 bit keys.
Peer Encryption Mode
: You may select “Only Stateless” or “Allow Stateless and Stateful” mode. The
key will be changed every packet when you select Stateless mode.
IP Addresses Assigned to Peer: 192.168.1.x: please input the IP assigned range from 1~ 254.
Idle Timeout
: Specify the time for remote peer to be disconnected without any activities, from 0~120
minutes.
Click Apply to submit your PPTP Server basic settings.
PPTP Client
PPTP client can help you dial-in the PPTP server to establish PPTP tunnel over Internet.
Page 120 / 169
120
Name
: user-defined name for identification.
WAN Interface
: Select the exact WAN interface configured for the tunnel. Select Default to use the
now-working WAN interface for the tunnel.
Username
: Enter the username provided by your VPN Server.
Password
: Enter the password provided by your VPN Server.
Auth. Type
: Default is Auto if you want the router to determine the authentication type to use, or else
manually specify CHAP (Challenge Handshake Authentication Protocol) or PAP (Password
Authentication Protocol) if you know which type the server is using (when acting as a client), or else
the authentication type you want clients connecting to you to use (when acting as a server). When
using PAP, the password is sent unencrypted, whilst CHAP encrypts the password before sending,
and also allows for challenges at different periods to ensure that an intruder has not replaced the
client.
PPTP Server Address
: Enter the IP address of the PPTP server.
Connection Type
: Select Remote Access for single user, Select LAN to LAN for remote gateway.
Time to Connect
: Select Always to keep the connection always on, or Manual to connect manually
any time.
Peer Network IP:
Please input the subnet IP for Server peer.
Peer Netmask:
Please input the Netmask for server peer. Click Add button to save your changes.
Example: PPTP Remote Access with Windows7
(Note: inside test with 172.16.1.208, just an example for illustration)
Server Side:
Configuration > VPN > PPTP and Enable the PPTP function, Click Apply.

Rate

4 / 5 based on 1 vote.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top