EasyManua.ls Logo

NETGEAR DGND3700 - VPN Tunnel Configuration

NETGEAR DGND3700
185 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
Virtual Private Networking
89
N600 Wireless Dual Band Gigabit ADSL2+ Modem Router DGND3700
Will either endpoint use fully qualified domain names (FQDNs)? FQDNs supplied by
Dynamic DNS providers (see Use a Fully Qualified Domain Name (FQDN) on page 163
)
can allow a VPN endpoint with a dynamic IP address to initiate
or respond to a tunnel
request. Otherwise, the side using a dynamic IP address has to always be the initiator.
Which method will
you use to configure your VPN tunnels?
- The VPN Wizard using VPNC defaults (see the following table)
- The typical automated Internet Key Exchange (IKE) setup (see Use Auto Policy to
Con
figure VPN Tunnels on page 11
2)
- A manual keyin
g setup in which you have to specify each phase of the connection
(see Use Manual Policy to Configure VPN Tunnels on pag
e 119)
Table 16. Parameters recommended by the VPNC and used in the VPN Wizard
Parameter Factory Default Setting
Secure Association Main Mode
Authentication Method Pre-Shared Key
Encryption Method 3DES
Authentication Protocol SHA-1
Diffie-Hellman (DH) Group Group 2 (1024 bit)
Key Life 8 hours
IKE Life Time 1 hour
What level of IPSec VPN encryption will you use?
- DES. The Dat
a Encryption Standard (DES) processes input data that is 64 bits wide,
encrypting these values using a 56-bit key. Faster but less secure than 3DES.
- 3DES. T
riple DES achieves a higher level of security by encrypting the data three
times using DES with three different, unrelated keys.
What level of authen
tication will you use?
- MDS. 128 bi
ts, faster but less secure.
- SHA-1. 160 bit
s, slower but more secure.
VPN Tunnel Configuration
There are two tunnel configurations and three ways to configure them:
Use the VPN Wizard to configure a VPN tunnel (recommended for most situations):
- See Set Up a Client-to
-Gateway VPN Configuration on pag
e 90.
- See Set Up a Gateway-to-Gateway VPN Configuration on p
age 101.
When the VPN Wizard and its VPNC defaults (see Ta
ble 16 on page 89) are not
appropriate for your special circumstances, but you want to automate the Internet Key
Exchange (IKE) setup, see Use Auto Policy to Con
figure VPN Tunnels on page 11
2.

Table of Contents

Other manuals for NETGEAR DGND3700

Related product manuals