DRO-210i Web Configuration
DRO-210i User Manual Page 3-40
ESP Auth
- This drop-down menu allows user to select the authentication
algorithm to be used when ESP is selected in the IPSec Operation drop-
down menu above. User can choose between Null - no authentication,
MD5 - using MD5 message digest authentication, and SHA - using the
SHA authentication method. User must select the same ESP authentication
algorithm on both ends of a VPN tunnel.
AH Transform
- This drop-down menu allows user to select the
authentication algorithm to be used when AH is selected in the IPSec
Operation drop-down menu. User can choose between MD5 - using MD5
message digest authentication, and SHA - using the SHA authentication
method. You must select the same AH authentication method on both ends
of a VPN tunnel.
Target Host Range
Type
- This drop-down menu allows user to select the type of network
definition for the range of IP addresses on the remote LAN that will be
allowed to access the VPN. At the time of the writing this manual, only
the Subnet type is supported.
Target Network Address
- This specifies the remote host machines that
can be accessible from a VPN tunnel. This is specified as a combination of
Network Address and number of bitmask. E.g: If you need to access
remote machines with a range of 192.168.20.1 to 192.168.20.16 , then you
can specify this range as 192.168.20.1 / 28.
The user has to specify a proper routing entry in the routing page for the
remote network address.
E.g: If the remote network address range is 192.168.20.1 / 28 , then the
user can specify the route entry with destination address as 192.168.20.0
with subnet mask 255.255.255.0 and outgoing device same as that of the
source interface which was specified in the corresponding tunnel entry.