DIR-882  AC2600  Wave 2 MU-MIMO Wi-Fi  Gigabit   Router   with
3G/LTE Support and 2 USB Ports
User Manual
Configuring via Web-based Interface
Parameter Description
Dynamic IPsec
Move the switch to the right to allow a remote host with any public IP
address to connect to the router via IPsec protocol. Such a setting can
be specified  for one  IPsec  tunnel only. Connection requests via  this
tunnel can be sent by a remote host only.
Type
Select an identification method for the remote host (router) from the
drop-down list:
• Address: The remote host is identified by its IP address.
• FQDN: The remote host is identified by its domain name. 
The  drop-down  list  is  displayed   if  the  Dynamic  IPsec  switch  is
moved to the left.
Remote host
Enter  the  remote subnet  VPN  gateway IP address  if the  Address
value is selected from the Type drop-down list.
Enter the  remote subnet  VPN gateway  domain name  if  the  FQDN
value is selected from the Type drop-down list.
The field is available  for editing  if the  Dynamic IPsec  switch  is
moved to the left.
Identifier value
Specify a unique name of the tunnel.
Pre-shared key
A PSK key for mutual authentication of the parties.  Click the Show
icon ( ) to display the entered key.
Local WAN
A WAN connection through which the tunnel will pass. Select a value
from the drop-down list.
• Interface:  When this value is selected, the  Interface  drop-
down   list  is   displayed.   Select  an   existing  WAN   connection
from the list.
• Default gateway: When this value is selected, the router uses
the default WAN connection.
NAT Traversal
The NAT Traversal function allows VPN traffic to pass through the
NAT-enabled  device.  DIR-882  allows   to  forcibly   encapsulate  VPN
traffic in UDP packets for passing through a remote device regardless
of whether it supports address translation.
If you need to enable forced encapsulation of VPN traffic, select the
Enabled value.
If you need to disable forced encapsulation of VPN traffic, select the
Disabled value.
Page 134 of 303