EasyManua.ls Logo

Draytek VIGOR2950 User Manual

Draytek VIGOR2950
217 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
Page #1 background imageLoading...
Page #1 background image
Vigor2950
Security VPN Router
User’s Guide
Version: 3.1
Date: 2008/02/15
Copyright 2008 All rights reserved.
This publication contains information that is protected by copyright. No part may be reproduced, transmitted,
transcribed, stored in a retrieval system, or translated into any language without written permission from the copyright
holders. The scope of delivery and other details are subject to change without prior notice.
Microsoft is a registered trademark of Microsoft Corp.
Windows, Windows 95, 98, Me, NT, 2000, XP and Explorer are trademarks of Microsoft Corp.
Apple and Mac OS are registered trademarks of Apple Inc.
Other products may be trademarks or registered trademarks of their respective manufacturers.

Table of Contents

Question and Answer IconNeed help?

Do you have a question about the Draytek VIGOR2950 and is the answer not in the manual?

Draytek VIGOR2950 Specifications

General IconGeneral
WAN Ports2
FirewallYes
VPN SupportYes
Maximum VPN Tunnels50
VPN ProtocolsIPSec, PPTP, L2TP
USB Ports1
LAN Ports4
Power Supply12V DC

Summary

Safety Instructions and Approval

Safety Instructions

Provides safety precautions for router installation and usage, including environmental and electrical safety.

Warranty

2. Configuring Basic Settings

2.1 Changing Password

Instructions on how to change the administrator password via the web interface for security.

2.2 Quick Start Wizard

Guides through initial router setup using a wizard for basic Internet connectivity.

3. Advanced Web Configuration

3.1.3 Internet Access

Configures WAN access modes such as PPPoE, Static IP, Dynamic IP, and PPTP/L2TP.

3.3.1 Port Redirection

Configures port forwarding to redirect incoming traffic to specific internal hosts.

3.4 Firewall

Configures firewall rules, IP filters, and packet inspection for network security.

3.4.3 Filter Setup

Defines specific filter rules for traffic inspection based on IP, port, and direction.

3.4.4 DoS Defense

Configures protection against various Denial of Service (DoS/DDoS) attacks.

3.4.5 URL Content Filter

Filters web content by blocking URLs containing specified keywords.

3.6 Bandwidth Management

Manages network bandwidth allocation and limits for efficient usage.

3.6.1 Sessions Limit

Limits the number of concurrent sessions per host to prevent resource exhaustion.

3.6.2 Bandwidth Limit

Sets upload and download speed limits for specific IP addresses or ranges.

3.6.3 Quality of Service

Prioritizes network traffic based on service levels to ensure performance for critical applications.

3.8 VPN and Remote Access

Configures Virtual Private Network connections, including IPSec, PPTP, and L2TP.

3.8.3 IPSec General Setup

General settings for IPSec VPNs, including IKE phases, authentication, and security methods.

3.8.5 Remote Dial-in User

Configures user profiles for remote access, including dial-in type, credentials, and security.

3.8.6 LAN to LAN

Configures site-to-site VPN connections between different LANs.

3.8.7 VPN TRUNK Management

Manages VPN tunnels for backup, load balancing, and GRE over IPSec configurations.

3.8.8 Connection Management

Manages active VPN connections, allowing disconnect, dial-out, and status monitoring.

3.9.1 Local Certificate

Generates and manages local digital certificates, including certificate requests.

3.9.2 Trusted CA Certificate

Imports and manages trusted CA certificates to verify remote peers' credentials.

3.11 Wireless LAN

Configuration for wireless network features, including security and access control.

3.11.2 General Setup

Configures wireless network SSID, channel, mode (Mixed, SuperG, 11g only), and preamble.

3.11.3 Security

Configures WEP and WPA security settings, including encryption modes and keys.

3.11.4 Access Control

Restricts wireless access by controlling clients' MAC addresses and isolating WLAN from LAN.

3.12 VLAN

Configures Virtual LANs to segment the network and manage hosts by physical port.

3.12.1 Wired VLAN

Configures VLAN settings for wired Ethernet ports to segment the network.

3.12.2 Wireless VLAN

Configures VLAN settings for wireless clients, allowing group sharing and access control.

3.13 SSL VPN

Configures Secure Sockets Layer Virtual Private Network for secure remote access.

3.13.1 SSL Web Proxy

Allows remote users to access internal websites securely over SSL.

3.13.2 User Account

Manages user accounts for SSL VPN access, linking them to remote dial-in user settings.

3.14 System Maintenance

Manages router system settings, including status, passwords, backups, and upgrades.

3.14.3 Administrator Password

Sets or changes the administrator password for accessing the router's web interface.

3.14.4 Configuration Backup

Backs up and restores router configurations to a file for disaster recovery.

3.14.9 Firmware Upgrade

Updates the router's firmware using the provided upgrade utility.

4. Application and Examples

4.1 Create a LAN-to-LAN Connection Between Remote Office and Headquarter

Example of setting up a secure site-to-site VPN connection between two LANs.

4.2 Create a Remote Dial-in User Connection Between the Teleworker and Headquarter

Example of setting up remote user VPN access for teleworkers to connect to the main office.

5. Trouble Shooting

5.5 Backing to Factory Default Setting If Necessary

Resets the router to factory default settings via software or hardware for troubleshooting.

Related product manuals