Page 46 / 125 Scroll up to view Page 41 - 45
Archer
D9
AC1900 Wireless Dual Band Gigabit ADSL2+ Modem Router User Guide
Figure 4-22
IPSec Connection Name:
Enter a name for your VPN.
Remote IPSec Gateway Address (URL):
Enter the destination gateway IP address which is
the public WAN IP or Domain Name of the remote VPN server endpoint. (For example: Input
219.134.112.247
in
Device1
, Input
219.134.112.246
in
Device 2
)
Tunnel access from local IP addresses:
Choose Subnet if you want the Whole LAN to join
the VPN network, or else choose Single Address if you want single IP to join the VPN network.
IP Address for VPN:
Enter the IP address of your LAN. (For example: Input
192.168.1.1
in
Device1
, Input
192.168.2.1
in
Device2
)
IP Subnetmask:
Enter the Subnet mask of your LAN. ( For example: Input
255.255.255.0
in
both
Device1
and
Device2
)
Tunnel access from remote IP addresses:
Choose Subnet if you want the Remote Whole
LAN to join the VPN network, or else choose Single Address if you want single IP to join the
VPN network.
IP Address for VPN:
Enter the IP address of the Remote LAN. ( For example: Input
192.168.2.1
in
Device1
,Input
192.168.1.1
in
Device2
)
IP Subnetmask:
Enter the subnetmask of the remote LAN. ( For example: Input
255.255.255.0
in both
Device1
and
Device2
)
Key Exchange Method:
Select
Auto (IKE)
or
Manual
.
Authentication Method:
Select
Pre-Shared Key
(recommended).
Pre-Shared Key:
Input the Pre-Shared key for Authentication. (For example: Input 12345678)
Perfect Forward Secrecy:
PFS is an additional security protocol.
After complete the basic settings and click Save/Apply in both
Device1
and
Device2
, PCs in LAN1
could communicate with PCs in remote LAN2. (For example: You can ping the IP address of PC2
which is 192.168.2.100 in PC1)
Note:
The VPN Servers Endpoint from both ends must use the same pre-shared keys and Perfect
Forward Secrecy settings.
35
Page 47 / 125
Archer
D9
AC1900 Wireless Dual Band Gigabit ADSL2+ Modem Router User Guide
Click
Show Advanced Settings
and then you can configure the Advanced Settings.
We
recommend you leave the Advanced Settings as default value.
Figure 4-23
Mode:
Select
Main Mode
to configure the standard negotiation parameters for IKE phase1.
Select
Aggressive Mode
to configure IKE phase1 of the VPN Tunnel to carry out negotiation
in a shorter amount of time. (Not Recommended-Less Secure)
Note:
The difference between the two modes is that aggressive mode will pass more information in
fewer packets, with the benefit of slightly faster connection establishment, at the cost of
transmitting the identities of the security firewall in the clear. When using aggressive mode, some
configuration parameters such as Diffie-Hellman groups and PFS can not be negotiated, resulting
in a greater importance of having "compatible" configuration on both ends.
Key Life Time:
Enter the number of seconds for the IPSec lifetime. It is the period of time to
pass before establishing a new IPSec security association (SA) with the remote endpoint. The
default value is 3600.
Note:
If you want to change the default settings of
Advanced Settings
, please make sure that both VPN
server endpoints use the same Encryption Algorithm, Integrity Algorithm, Diffie-Hellman Group
and Key Life time in both
phase1
and
phase2
.
4.6 IPTV
Choose “
IPTV
”, and you will see the screen as shown in Figure 4-24.
36
Page 48 / 125
Archer
D9
AC1900 Wireless Dual Band Gigabit ADSL2+ Modem Router User Guide
Figure 4-24
Enable IPTV:
Check the box to enable IPTV function.
VPI (0~255):
Identifies the virtual path between endpoints in an ATM network. The valid range
is from 0 to 255. Please input the value provided by your ISP.
VCI (1~65535):
Identifies the virtual channel endpoints in an ATM network. The valid range is
from 1 to 65535 (1 to 31 is reserved for well-known protocols). Please input the value
provided by your ISP.
Click the
Save
button to save your settings.
4.7 DHCP Server
Choose “
DHCP Server
”, you can see the next submenus:
Click any of them, and you will be able to configure the corresponding function.
4.7.1
DHCP Settings
Choose menu “
DHCP Server
DHCP Settings
”, you can configure the DHCP Server on the
page as shown in Figure 4-25.The modem router is set up by default as a DHCP (Dynamic Host
Configuration Protocol) server, which provides the TCP/IP configuration for all the PC(s) that are
connected to the modem router on the LAN.
37
Page 49 / 125
Archer
D9
AC1900 Wireless Dual Band Gigabit ADSL2+ Modem Router User Guide
Figure 4-25
Group/ IP Address/ Subnet Mask:
Displays group name, IP address and subnet mask.
The parameters can be configured on the
Interface Grouping
page and
LAN Settings
page.
DHCP Server:
If enabled, the modem router will work as a DHCP server, which provides the
TCP/IP configuration for all the PC(s) that are connected to it on the LAN.
Start IP Address:
Enter a value for the DHCP server to start with when issuing IP addresses.
Because the default IP address for the modem router is 192.168.1.1, the default Start IP
Address is
192.168.1.100
, and the Start IP Address must be 192.168.1.100 or greater, but
smaller than 192.168.1.254.
End IP Address:
Enter a value for the DHCP server to end with when issuing IP addresses.
The End IP Address must be smaller than 192.168.1.254. The default End IP Address is
192.168.1.254
.
Lease Time:
The Leased Time is the amount of time in which a DHCP client can lease its
current dynamic IP address assigned by the modem router. After the dynamic IP address has
expired, the user will be automatically assigned a new dynamic IP address. The default is
1440
minutes.
Default Gateway
(Optional.)
:
It is suggested to input the IP address of the LAN port of the
modem router. The default value is 192.168.1.1.
Default Domain
(Optional.)
:
Input the domain name of your network.
Primary DNS
(Optional.)
:
Input the DNS IP address provided by your ISP.
Secondary DNS
(Optional.)
:
Input the IP address of another DNS server if your ISP provides
two DNS servers.
DHCP Relay:
Select
Relay
, then you will see the next screen, and the modem router will work
as a DHCP Relay. A DHCP relay is a computer that forwards DHCP data between computers
that request IP addresses and the DHCP server that assigns the addresses. Each of the
device's interfaces can be configured as a DHCP relay. If it is enabled, the DHCP requests
from local PCs will forward to the DHCP server runs on WAN side. To have this function
working properly, please run on router mode only, disable the DHCP server on the LAN port,
and make sure the routing table has the correct routing entry.
38
Page 50 / 125
Archer
D9
AC1900 Wireless Dual Band Gigabit ADSL2+ Modem Router User Guide
Note:
1)
To use the DHCP server function of the modem router, you must configure all computers on
the LAN as "Obtain an IP Address automatically".
2)
You have to disable NAT of the WAN connections, or the DHCP Relay may not take effect.
3)
If you select
Disabled
, the DHCP function will not take effect.
Click the
Save
button to save your settings.
4.7.2
Clients List
Choose menu “
DHCP Server
Clients List
”, you can view the information about the clients
attached to the modem router in the screen as shown in Figure 4-26.
Figure 4-26
Client Name
:
The name of the DHCP client.
MAC Address
:
The MAC address of the DHCP client.
IP Address
:
The IP address that the modem router has allocated to the DHCP client.
Valid Time
:
The time of the DHCP client leased. After the dynamic IP address has expired,
a new dynamic IP address will be automatically assigned to the user.
Click the
Refresh
button to update this page.
4.7.3
Address Reservation
Choose menu “
DHCP Server
Address Reservation
”, you can view and add a reserved
address for clients via the next screen (shown in Figure 4-27).When you specify a reserved IP
address for a PC on the LAN, that PC will always receive the same IP address each time when it
accesses the DHCP server. Reserved IP addresses should be assigned to the servers that require
permanent IP settings.
39

Rate

3.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top