Netgear N600 Wireless Router User Manual
Here you can view all the pages of manual Netgear N600 Wireless Router User Manual. The Netgear manuals for Router are available online for free. You can easily download all the documents as PDF.
Page 161
NETGEAR VPN Configuration161 N600 Wireless Dual Band Gigabit ADSL2+ Modem Router DGND3700 3. On the Gateway B router menu, under VPN, select IKE Policies, and click the Edit button to display the IKE Policy Configuration screen: toGW_A 14.15.16.17 22.23.24.25 4. On Gateway B router menu, under VPN, select VPN Policies, and click the Edit button to display the VPN - Auto Policy screen: toGW_AtoGW_A 172239 1056 1 14.15.16.17 toGW_AtoGW_A 5. Test the VPN tunnel by pinging the remote network from a PC...
Page 162
NETGEAR VPN Configuration162 N600 Wireless Dual Band Gigabit ADSL2+ Modem Router DGND3700 b. Type ping 172.23.9. If the pings fail the first time, try the pings a second time. Wireless Modem Router with FQDN to Gateway B This section is a case study on how to configure a VPN tunnel from a NET\ GEAR wireless modem router to a gateway using a fully qualified domain name (FQDN) t\ o resolve the public address of one or both routers. This case study follows the VPN Consorti\ um interoperability profile...
Page 163
NETGEAR VPN Configuration163 N600 Wireless Dual Band Gigabit ADSL2+ Modem Router DGND3700 Use a Fully Qualified Domain Name (FQDN) Many ISPs provide connectivity to their customers using dynamic instead \ of static IP addressing. This means that a user’s IP address does not remain const\ ant over time, which presents a challenge for gateways attempting to establish VPN connectivi\ ty. A Dynamic DNS (DDNS) service allows a user whose public IP address is \ dynamically assigned to be located by a host...
Page 164
NETGEAR VPN Configuration164 N600 Wireless Dual Band Gigabit ADSL2+ Modem Router DGND3700 a. Under Advanced, select Dynamic DNS. b. Fill in the fields with account and host name settings. • Select the Use a Dynamic DNS Service check box. • In the Host Name field, type dgnd3300v2.dyndns.org. • In the User Name field, enter the account user name. • In the Password field, enter the account password. c. Click Apply . d. Click Show Status. The resulting screen should show Update OK: good:...
Page 165
NETGEAR VPN Configuration165 N600 Wireless Dual Band Gigabit ADSL2+ Modem Router DGND3700 The Dynamic DNS screen displays: c. Fill in the fields with the account and host name settings. • In the Host and Domain Name field, enter fvl328.dyndns.org. • In the User Name field, enter the account user name. • In the Password field, enter the account password. d. Click Apply. e. Click Show Status . The resulting screen should show Update OK: good: 4. Configure the N600 Wireless Dual Band...
Page 166
NETGEAR VPN Configuration166 N600 Wireless Dual Band Gigabit ADSL2+ Modem Router DGND3700 The LAN addresses used in this example are as follows: Table 26. DeviceLAN IP AddressLAN Subnet Mask DGND3700 10.5.6.1255.255.255.0 FVL328 172.23.6.1255.255.255.0 a.For the connection name, enter toFVL328. b. For the remote WANs IP address, enter fvl328.dyndns.org. c. Enter the following: • IP Address. 172.23.9.1 • Subnet Mask. 255.255.255.0 5. Configure the FVL328 as in the gateway-to-gateway...
Page 167
NETGEAR VPN Configuration167 N600 Wireless Dual Band Gigabit ADSL2+ Modem Router DGND3700 Verify that the firmware is up to date, and make sure you have all the a\ ddresses and parameters to be set on both sides. Assure that there are no firewall re\ strictions Table 27. Configuration summary (telecommuter example) VPN Consortium ScenarioScenario 1 Type of VPN: PC/client-to-gateway, with client behind NAT router Security scheme: IKE with pre-shared secret/key (not certificate based) IP addressing:...
Page 168
NETGEAR VPN Configuration168 N600 Wireless Dual Band Gigabit ADSL2+ Modem Router DGND3700 Step 1: Configure Gateway A (VPN Router at Main Office) To configure a VPN tunnel: 1. Log in to the VPN router. Select VPN Policies to display the VPN Policies screen. Click Add Auto Policy to proceed and enter the information. toGW_A.com (in this example) fromGW_A.com (in this example) fromGW_A (in the example) 192.168.2.3 (in this example) IKE Keep Alive is optional; has to match Remote LAN IP Address when...
Page 169
NETGEAR VPN Configuration169 N600 Wireless Dual Band Gigabit ADSL2+ Modem Router DGND3700 Step 2: Configure Gateway B (VPN Router at Regional Office) This procedure assumes that the PC running the client has a dynamically \ assigned IP address. The PC has to have a VPN client program installed that supports IPSec (\ in this case study, the NETGEAR VPN ProSafe Client is used). Go to the NETGEAR website ( www.netgear.com ) for information about how to purchase the NETGEAR ProSafe VPN Client. Note:...
Page 170
NETGEAR VPN Configuration170 N600 Wireless Dual Band Gigabit ADSL2+ Modem Router DGND3700 Note: In this example, the connection name on the client side of the VPN tunnel is toGW_A. It does not have to match the VPN_client connection na\ me used on the gateway side of the VPN tunnel because connection names do n\ ot affect how the VPN tunnel functions. d. In the Connection Security section, select Secure. toGW_A e. In the ID Type drop-down list, select IP Subnet. f. In this example, in the Subnet...