Netgear Dgn2200v4 N300 Wireless Adsl2 Plus Modem Router User Manual
Have a look at the manual Netgear Dgn2200v4 N300 Wireless Adsl2 Plus Modem Router User Manual online for free. It’s possible to download the document as PDF or print. UserManuals.tech offer 137 Netgear manuals and user’s guides for free. Share the user manual or guide on Facebook, Twitter or Google+.
Advanced Settings 101 N300 Wireless ADSL2+ Modem Router DGN2200v4 By default, the value is 0 and no warning message is issued. You can select one of the following to occur when the limit is attained: •The Internet LED flashes green or amber. •The Internet connection is disconnected and disabled. 7. Click the Apply button. The Internet Traffic Statistics section helps you to monitor the data traffic. Click the Refresh button to update the Traffic Statistics section. Click the Traffic Status button to display more information about the data traffic on your modem router and to change the poll interval.
102 9 9. Virtual Private Networking This chapter describes how to use the virtual private networking (VPN) features of the modem router. VPN communications paths are called tunnels. VPN tunnels provide secure, encrypted communications between your local network and a remote network or computer. This chapter contains the following sections: •Overview of VPN Configuration •Set Up a Client-to-Gateway VPN •Add a Gateway-to-Gateway VPN Tunnel •Activate a VPN Tunnel •View or Change the Status of a VPN Tunnel •Auto Policy Example •Add or Edit a VPN Auto Policy •Add or Edit a Manual VPN Policy
Virtual Private Networking 103 N300 Wireless ADSL2+ Modem Router DGN2200v4 Overview of VPN Configuration The modem router supports both client-to-gateway and gateway-to-gateway \ VPN tunnels. The modem router supports up to five concurrent tunnels. Client-to-Gateway VPN Tunnels Client-to-gateway VPN tunnels provide secure access from a remote comput\ er, such as a telecommuter connecting to an office network. Modem router VPN tunnel PC running NETGEAR ProSafe VPN Client Figure 12. Telecommuter VPN tunnel A VPN client access allows a remote computer to connect to your network \ from any location on the Internet. Gateway-to-Gateway VPN Tunnels Gateway-to-gateway VPN tunnels provide secure access between networks, s\ uch as a branch or home office and a main office. Gateway A Gateway B VPN tunnel (Office) (Home) Figure 13. VPN tunnel between networks A VPN tunnel between gateways is a good way to connect branch or home of\ fices and business partners over the Internet.
Virtual Private Networking 104 N300 Wireless ADSL2+ Modem Router DGN2200v4 Set Up a Client-to-Gateway VPN This section describes using the VPN Wizard to set up the VPN tunnel. If\ you want to manually specify the settings, see Auto Policy Example on page 11 0. To configure a client-to-gateway VPN tunnel: 1. Select Advanced > Advanced - VPN > VPN Wizard . 2. Click Next. 3. Fill in the Connection Name and pre-shared key fields. The connection name is for convenience and does not affect how the VPN tunnel functions. 4. Select A remote VPN client (single computer) radio button and click Next. The Summary screen displays: Note: To view the VPNC-recommended authentication and encryption settings used by the VPN Wizard, click the here link.
Virtual Private Networking 105 N300 Wireless ADSL2+ Modem Router DGN2200v4 5. Click Done. The VPN Policies screen displays, showing that the new tunnel is enabled\ : 6. (Optional) To view or modify a tunnel’s settings, select its radio button and click Edit. 7. Use VPN client software on the computer to configure it as a VPN client.\ Add a Gateway-to-Gateway VPN Tunnel This section describes how to use the VPN Wizard to set up the VPN tunne\ l between two gateways. The LAN IP address ranges of each VPN endpoint have to be different. The connection will fail if both are using the default address range of 192.\ 168.0.x. To add a gateway-to-gateway VPN tunnel: 1. Log in to Gateway A on LAN A. 2. Select Advanced > Advanced - VPN > VPN Wizard . 3. Click Next.
Virtual Private Networking 106 N300 Wireless ADSL2+ Modem Router DGN2200v4 4. Fill in the Connection Name and pre-shared key fields. Select the A remote VPN Gateway radio button and click Next. 5. Fill in the IP address or FQDN for the target VPN endpoint WAN connection, and click Next. 6. Fill in the IP Address and Subnet Mask fields for the target endpoint that can use this\ tunnel, and click Next. The VPN Wizard Summary screen displays: To view the VPNC-recommended authentication and encryption settings used \ by the VPN Wizard, click the here link. 7. Click Done on the Summary screen.
Virtual Private Networking 107 N300 Wireless ADSL2+ Modem Router DGN2200v4 The VPN Policies screen displays, showing that the new tunnel is enabled\ . 8. Repeat these steps for the gateway on LAN B, and pay special attention to the following network settings: • W AN IP of the remote VPN gateway (for example, 14.15.16.17) •LAN IP settings of the remote VPN gateway: - IP address (for example, 192.168.0.1) - Subnet mask (for example, 255.255.255.0) - Pre-shared key (for example, 12345678) Activate a VPN Tunnel To activate a VPN tunnel, you can use the VPN Status screen or start usin\ g the tunnel. To use the VPN Status screen to activate a VPN tunnel: 1. Select Advanced > Advanced - VPN > VPN Status, and click the VPN Status button. The Current VPN Tunnels (SAs) screen displays. 2. Click Connect for the VPN tunnel that you want to activate. To activate a VPN tunnel by using it: Use a web browser to go to a URL whose IP address or range is covered by\ the policy for that VPN tunnel.
Virtual Private Networking 108 N300 Wireless ADSL2+ Modem Router DGN2200v4 View or Change the Status of a VPN Tunnel The VPN Status/Log screen displays the status. To check the status of a VPN tunnel: 1. Select Advanced > Advanced - VPN > VPN Status. The VPN Status/Log screen displays: This log shows the details of recent VPN activity, including the building of the VPN tunnel. If there is a problem with the VPN tunnel, refer to the log for informat\ ion about what might be the cause of the problem. 2. (Optional) Click Refresh to see the most recent entries. 3. (Optional) Click Clear Log to delete all log entries. 4. Click the VPN Status button. The Current VPN Tunnels (SAs) screen displays. This screen lists the following data for each active VPN tunnel. • SPI. Each SA has a unique (security parameter index (SPI) for traf fic in each direction. For manual key exchange, the SPI is specified in the policy d\ efinition. For automatic key exchange, the SPI is generated by the IKE protocol. • Policy Name. The VPN policy associated with this SA. • Remote Endpoint. The IP address on the remote VPN endpoint. • Action. Either a Drop or a Connect button.
Virtual Private Networking 109 N300 Wireless ADSL2+ Modem Router DGN2200v4 • SLifeTime (Secs) . The remaining soft lifetime for this SA in seconds. When the soft lifetime becomes 0 (zero), the SA (security association) is renegoti\ ated. • HLifeT ime (Secs). The remaining hard lifetime for this SA in seconds. When the hard lifetime becomes 0 (zero), the SA (security association) is terminat\ ed. (It is reestablished if necessary.) Deactivate a VPN Tunnel Sometimes a VPN tunnel has to be deactivated for testing purposes. You can deactivate a VPN tunnel from two places: •Policy table on VPN Policies screen • VPN Status screen To use the Policy Table to deactivate a VPN tunnel: 1. Select Advanced > Advanced - VPN > VPN Policies. 2. In the Policy Table, clear the Enable check box for the VPN tunnel that you want to deactivate. 3. Click Apply . To reactivate the tunnel, select the Enable check box and click Apply. To use the VPN Status Screen to deactivate a VPN tunnel: 1. Advanced > Advanced - VPN > VPN Status , and click the VPN Status button. The Current VPN Tunnels (SAs) screen displays: 2. Click Drop for the VPN tunnel that you want to deactivate.
Virtual Private Networking 110 N300 Wireless ADSL2+ Modem Router DGN2200v4 Delete a VPN Tunnel To delete VPN tunnel: 1. Select Advanced > Advanced - VPN > VPN Policies. 2. Select the radio button for the VPN tunnel. 3. Click Delete . Auto Policy Example You need to configure matching VPN settings on both VPN endpoints. The outbound VPN settings on one end have to match to the inbound VPN settings on other e\ nd, and vice versa Auto policy creates a typical automated Internet Key Exchange (IKE) se\ tup. Auto Policy uses the IKE protocol to define the authentication scheme and automatically g\ enerate the encryption keys. Gateway A Gateway B VPN Tunnel 22.23.24.25 14.15.16.17 IP: 192.168.0.1 IP:192.168.3.1 Figure 14. Example of an Auto policy for a gateway-to-gateway tunnel