Vigor2912 Series User’s Guide
310
High-
Encapsulating Security Payload (ESP) means
payload (data) will be encrypted and authenticated.
You may select encryption algorithm from Data
Encryption Standard (DES), Triple DES (3DES), and
AES.
GRE over IPsec
Settings
Enable IPsec Dial-Out function GRE over IPsec
: Check
this box to verify data and transmit data in encryption with
GRE over IPsec packet after configuring IPsec Dial-Out
setting. Both ends must match for each other by setting
same virtual IP address for communication.
Logical Traffic
: Such technique comes from RFC2890.
Define logical traffic for data transmission between both
sides of VPN tunnel by using the characteristic of GRE.
Even hacker can decipher IPsec encryption, he/she still
cannot ask LAN site to do data transmission with any
information. Such function can ensure the data transmitted
on VPN tunnel is really sent out from both sides. This is an
optional function. However, if one side wants to use it, the
peer must enable it, too.
My GRE IP
: Type the virtual IP for router itself for
verified by peer.
Peer GRE IP
: Type the virtual IP of peer host for verified
by router.
TCP/IP Network
Settings
My WAN IP –
This field is only applicable when you select
PPTP or L2TP with or without IPsec policy above. The
default value is 0.0.0.0, which means the Vigor router will
get a PPP IP address from the remote router during the
IPCP negotiation phase. If the PPP IP address is fixed by
remote side, specify the fixed IP address here. Do not
change the default value if you do not select PPTP or L2TP.
Remote Gateway IP -
This field is only applicable when
you select PPTP or L2TP with or without IPsec policy
above. The default value is 0.0.0.0, which means the Vigor
router will get a remote Gateway PPP IP address from the
remote router during the IPCP negotiation phase. If the PPP
IP address is fixed by remote side, specify the fixed IP
address here. Do not change the default value if you do not
select PPTP or L2TP.
Remote Network IP/ Remote Network Mask -
Add a
static route to direct all traffic destined to this Remote
Network IP Address/Remote Network Mask through the
VPN connection. For IPsec, this is the destination clients
IDs of phase 2 quick mode.
Local Network IP / Local Network Mask -
Display the
local network IP and mask for TCP / IP configuration. You
can modify the settings if required.
More -
Add a static route to direct all traffic destined to
more Remote Network IP Addresses/ Remote Network
Mask through the VPN connection. This is usually used
when you find there are several subnets behind the remote
VPN router.
Summary of Contents for Vigor2912 Series
Page 1: ......
Page 2: ...Vigor2912 Series User s Guide ii ...
Page 6: ...Vigor2912 Series User s Guide vi ...
Page 114: ...Vigor2912 Series User s Guide 104 This page is left blank ...
Page 188: ...Vigor2912 Series User s Guide 178 5 Click OK to save the settings ...
Page 256: ...Vigor2912 Series User s Guide 246 The items categorized under P2P ...
Page 377: ...Vigor2912 Series User s Guide 367 ...
Page 388: ...Vigor2912 Series User s Guide 378 Below shows the successful activation of Web Content Filter ...
Page 414: ...Vigor2912 Series User s Guide 404 This page is left blank ...