EasyManuals Logo

NETGEAR FVS318G User Manual

NETGEAR FVS318G
422 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #257 background imageLoading...
Page #257 background image
Virtual Private Networking Using IPSec and L2TP Connections
257
NETGEAR ProSAFE VPN Firewall FVS318G v2
The Edit VPN Policy screen displays. This screen shows the same fields as the Add New
VPN Policy screen.
5. Mo
dify the settings that you wish to change (see T
able 53 on page 252).
6. Click the Ap
ply button.
Your changes are saved.
Configure Extended Authentication (XAUTH)
When many VPN clients connect to a VPN firewall, you might want to use a unique user
authentication method beyond relying on a single common pre-shared key for all clients.
Although you could configure a unique VPN policy for each user, it is more efficient to
authenticate users from a stored list of user accounts. XAUTH provides the mechanism for
requesting individual authentication information from the user. A local user database or an
external authentication server, such as a RADIUS server, provides a method for storing the
authentication information centrally in the local network.
You can enable XAUTH when you manually add or edit an IKE policy
. T
wo types of XAUTH
are available:
Edg
e Device. The VPN fire
wall is used as a VPN concentrator on which one or more
gateway tunnels terminate. You must specify the authentication type to be used during
verification of the credentials of the remote VPN gateways: the user database,
RADIUS-PAP, or RADIUS-CHAP.
IPSec Host. Authe
ntication by the remote gateway through a user name and password
that are associated with the IKE policy. The user name and password that are used to
authenticate the VPN firewall must be specified on the remote gateway.
If a RADIUS-PAP server is enabled for authentication, XAUTH first c
hecks the local user
database for the user credentials. If the user account is not present, the VPN firewall then
connects to a RADIUS server.
This section contains the following topics:
Configure XAUTH for VPN Clients
User Database Configuration
RADIUS Client and Server Configuration
Configure XAUTH for VPN Clients
Once the XAUTH is enabled, you must establish user accounts in the user database to be
authenticated against XAUTH, or you must enable a RADIUS-CHAP or RADIUS-PAP server.
You cannot modify an existing IKE policy to add XAUTH while the IKE policy is in use by a
VPN policy
. The VPN policy must be disabled befo
re you can modify the IKE policy.
To enable and configure XAUTH:
1. Log in to the unit:

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the NETGEAR FVS318G and is the answer not in the manual?

NETGEAR FVS318G Specifications

General IconGeneral
Power requirements12V DC, 1.5A
Firewall throughput250 Mbit/s
Maximum data transfer rate1000 Mbit/s
HTTP performance6000 transactions/sec
Wi-FiNo
DHCP serverYes
Number of VLANs256
VPN tunnels quantity12
WAN connectionEthernet (RJ-45)
Connectivity technologyWired
Ethernet LAN (RJ-45) ports9
Ethernet DMZ ports quantity1
Routing protocolsRIP-1, RIP-2
Supported network protocolsTCP/IP, UDP, ICMP, PPPoE
VPN supportIPsec (ESP), IKE, PKI, HTTPS
Security algorithms128-bit AES, 192-bit AES, 256-bit AES, 3DES, DES, MD5, SHA-1
Internal memory128 MB
Flash memory32 MB
Storage media typeFlash
Processor frequency300 MHz
Storage temperature (T-T)-20 - 70 °C
Operating temperature (T-T)0 - 45 °C
Cables includedLAN (RJ-45)
Weight and Dimensions IconWeight and Dimensions
Weight590 g
Dimensions (WxDxH)190 x 125 x 35 mm

Related product manuals