Vigor2926 Series User’s Guide
324
Specify Remote VPN Gateway - You can specify the IP
address of the remote dial-in user or peer ID (should be the
same with the ID setting in dial-in type) by checking the box.
Also, you should further specify the corresponding security
methods on the right side.
If you uncheck the checkbox, the connection type you select
above will apply the authentication methods and security
methods in the general settings.
Username - This field is applicable when you select PPTP or
L2TP with or without IPsec policy above. The length of the
name is limited to 11 characters.
Password - This field is applicable when you select PPTP or
L2TP with or without IPsec policy above. The length of the
password is limited to 11 characters.
VJ Compression - VJ Compression is used for TCP/IP
protocol header compression. This field is applicable when
you select PPTP or L2TP with or without IPsec policy above.
IKE Authentication Method - This group of fields is
applicable for IPsec Tunnels and L2TP with IPsec Policy when
you specify the IP address of the remote node. The only
exception is Digital Signature (X.509) can be set when you
select IPsec tunnel either with or without specify the IP
address of the remote node.
Pre-Shared Key - Check the box of Pre-Shared Key to
invoke this function and type in the required characters
(1-63) as the pre-shared key.
Digital Signature (X.509) –Check the box of Digital
Signature to invoke this function and select one
predefined Profiles set in the VPN and Remote Access
>>IPsec Peer Identity.
Local ID – Specify which one will be inspected
first.
Alternative Subject Name First – The alternative
subject name (configured in Certificate
Management>>Local Certificate) will be
inspected first.
Subject Name First – The subject name
(configured in Certificate Management>>Local
Certificate) will be inspected first.
IPsec Security Method - This group of fields is a must for
IPsec Tunnels and L2TP with IPsec Policy when you specify
the remote node.
Medium- Authentication Header (AH) means data will
be authenticated, but not be encrypted. By default,
this option is active.
High- Encapsulating Security Payload (ESP) means
payload (data) will be encrypted and authenticated.
You may select encryption algorithm from Data
Encryption Standard (DES), Triple DES (3DES), and AES.
GRE over IPsec
Settings
Enable IPsec Dial-Out function GRE over IPsec: Check this
box to verify data and transmit data in encryption with GRE
over IPsec packet after configuring IPsec Dial-Out setting.
Both ends must match for each other by setting same virtual
IP address for communication.
Logical Traffic: Such technique comes from RFC2890. Define
logical traffic for data transmission between both sides of
Summary of Contents for Vigor2926
Page 1: ...i ...
Page 4: ...Vigor2926 Series User s Guide iv ...
Page 14: ......
Page 16: ......
Page 66: ...Vigor2926 Series User s Guide 50 This page is left blank ...
Page 112: ...Vigor2926 Series User s Guide 96 ...
Page 149: ...Vigor2926 Series User s Guide 133 ...
Page 154: ...Vigor2926 Series User s Guide 138 ...
Page 204: ...Vigor2926 Series User s Guide 188 ...
Page 310: ...Vigor2926 Series User s Guide 294 This page is left blank ...
Page 410: ...Vigor2926 Series User s Guide 394 The items categorized under OTHERS ...
Page 436: ...Vigor2926 Series User s Guide 420 ...
Page 450: ...Vigor2926 Series User s Guide 434 ...
Page 465: ...Vigor2926 Series User s Guide 449 ...
Page 470: ...Vigor2926 Series User s Guide 454 ...
Page 544: ...Vigor2926 Series User s Guide 528 ...
Page 547: ...Vigor2926 Series User s Guide 531 ...
Page 588: ...Vigor2926 Series User s Guide 572 ...
Page 610: ...Vigor2926 Series User s Guide 594 This page is left blank ...
Page 688: ...Vigor2926 Series User s Guide 672 ...
Page 696: ...Vigor2926 Series User s Guide 680 ...
Page 700: ...Vigor2926 Series User s Guide 684 ...
Page 702: ...Vigor2926 Series User s Guide 686 This page is left blank ...
Page 706: ...Vigor2926 Series User s Guide 690 ...