VPN
30
CG3000DCR Advanced Cable Modem Gateway 
client software. The gateway on your network is the other tunnel endpoint. See Set Up a 
Client-to-Gateway VPN Configuration o
n page 32 for information about how to set up this 
configuration.
Gateway-to-Gateway VPN Tunnels
Gateway-to-gateway VPN tunnels provide secure access between networks, such as a 
branch or home office and a main office.
Figure 4. VPN tunnel between two gateways
A VPN between two or more NETGEAR VPN-enabled routers is a good way to connect 
branch or home offices and business partners over the Internet. VPN tunnels also enable 
access to network resources across the Internet. In this case, use gateways on each end of 
the tunnel to form the VPN tunnel endpoints. 
Planning a VPN
When you set up a VPN, it is helpful to plan the network configuration and record these 
configuration parameters:
•     Conn
ection name
•     Pre-shared
 key
•     Secure associat
ion (main mode or manual keys)
•     Pe
rfect Forward Secrecy 
•     Encryption Proto
col
•     Dif
fie-Hellman (DH) Group
•     Key life in 
seconds
•     IKE life time in se
conds
•     VPN end
point
•     Lo
cal IPSec ID
•     LAN IP ad
dress
•     Subn
et mask