8. The
Filters Properties
screen will appear, as shown in Figure B-8. Select the Addressing tab. In
the
Source
address
field, select
A specific IP Subnet
, and enter the IP Address: 192.168.1.0 and Subnet
mask:
255.255.255.0. (Enter your new values if you have changed the default settings.) In the
Destination address
field, select
My IP Address
.
9. If you want to enter a description for your filter, click the
Description
tab and enter the
description there.
10. Click the
OK
or
Close
button and the
New Rule Properties
screen should appear with the IP
Filer List tab
selected, as shown in Figure B-9. There should now be a listing for “Router -> win” and “win ->
Router”.
Click the
OK
(for WinXP) or
Close
(for Win2000) button on the
IP Filter List
window.
Figure C-7: IP Filter List
Figure C-8: Filters Properties
Figure C-9: New Rule Properties
Step 3: Configure Individual Tunnel Rules
Tunnel 1: win->Router
1. From the
IP Filter List
tab, shown in Figure B-10, click the filter list win->Router.
2. Click the
Filter Action
tab (as in Figure B-11), and click the filter action
Require Security
radio
button. Then,
click the
Edit
button.
3. From the
Security Methods
tab, shown in Figure B-12, verify that the
Negotiate security
option
is enabled,
and deselect the
Accept unsecured communication, but always respond using IPSec
check
box. Select
Session key Perfect Forward Secrecy
, and click the
OK
button.
Figure C-12: Security Methods Tab
Figure C-10: IP Filter List Tab
Figure C-11: Filter Acton Tab
4. Select the
Authentication Methods
tab, shown in Figure B-13, and click the
Edit
button.
5. Change the authentication method to
Use this string to protect the key exchange
(preshared key)
, as
shown in Figure B-14, and enter the preshared key string, such as XYZ12345. Click the
OK
button.
6. This new Preshared key will be displayed in Figure B-15. Click the
Apply
button to continue, if it
appears on
your screen, otherwise proceed to the next step.
Figure C-13: Authentication Methods
Figure C-14: Preshared Key
Figure C-15: New Preshared Key
7. Select the
Tunnel Setting
tab, shown in Figure B-16, and click
The tunnel endpoint is
specified by this IP
Address
radio button. Then, enter the Router’s WAN IP Address.
8. Select the
Connection Type
tab, as shown in Figure B-17, and click
All network connections
.
Then, click
the
OK
or
Close
button to finish this rule.
Tunnel 2: Router->win
9. In the new policy’s properties screen, shown in Figure B-18, make sure that “win -> Router” is
selected and
deselect the
Use Add Wizard
check box. Then, click the
Add
button to create the second IP filter.
Figure C-16: Tunnel Setting Tab