background image

DI-804HV with Windows 2000/XP IPsec VPN 
Client Configuration Guide 

 
 

This guide will show how to configure a Windows 2000/XP machine to make an IPsec VPN 
Tunnel connection to a DI-804HV.  Below is the example network that this document is based 

on.   

 
 

Technical Requirement: Customer is required to understand their network and Windows 
2000/XP well for this configuration.  Please consult a Microsoft certified professional if unsure. 

The information provided here is for your reference only. D-Link will not be held responsible for 
any consequences arise from it. 

 
 

Windows 2000 

Professional

Workstation

VPN Client

DI-804HV

LAN: 192.168.0.0/24

DSL-

300G+

Internet

Internet

WAN IP: 10.0.0.1

IP: 10.0.0.2

Summary of Contents for DI-804HV - Express ENwork Router

Page 1: ...on Technical Requirement Customer is required to understand their network and Windows 2000 XP well for this configuration Please consult a Microsoft certified professional if unsure The information pr...

Page 2: ...at VPN is checked and enter 5 for maximum number of tunnels Click on Apply and then Restart to save the settings Log in again and then Click on Home VPN Dynamic VPN Settings 3 Enter the following deta...

Page 3: ...the bottom to 1 and then click on the Add to button Click on Apply and then Restart 5 Click on Home VPN Click on Dynamic VPN Settings Click on Select IPsec Proposal Under ID 1 enter the Proposal Name...

Page 4: ...ws 2000 XP Configuration 1 Go into Start Run and the type in MMC to bring up the Console 2 Click on Console and then Click on Add Remove Snap In In Windows XP click on File Add Remove Snap in 3 Click...

Page 5: ...with Windows 2000 XP IPsec VPN Client Configuration Guide Page 5 5 Select Local computer and then click on Finish 6 Click on Close on the Add Standalone Snap in window 7 Click on OK in the Add Remove...

Page 6: ...nt Configuration Guide Page 6 8 Right Click on IP Security Policies on Local Machine Select Create IP Security Policy 9 The wizard should then come up Click Next to continue 10 Enter the name for the...

Page 7: ...ows 2000 XP IPsec VPN Client Configuration Guide Page 7 11 Uncheck Activate the default response rule Click Next 12 Click on Finish 13 The Properties window for the newly created policy should then co...

Page 8: ...the name and the description for the New IP Filter List Uncheck the Use Add Wizard Click on Add 16 Select A specific IP subnet for the Source address and enter the Internal LAN range on the DI 804HV...

Page 9: ...DI 804HV with Windows 2000 XP IPsec VPN Client Configuration Guide Page 9 17 Click Close 18 Select the newly created IP Filter 19 Click on the Filter Action Tab Select Require Security Click on Edit...

Page 10: ...ve the 3DES MD5 security method to the top Check the Session key Perfect Forward Secrecy Click OK 21 Click on Connection Type Tab Select All network connections 22 Click on Tunnel Setting Tab Specify...

Page 11: ...VPN Client Configuration Guide Page 11 23 Click on Authentication Methods Tab Click on Kerberos and then Click on Edit 24 Select Use this string to protect the key exchange preshared key Type in the P...

Page 12: ...Psec VPN Client Configuration Guide Page 12 26 Select the newly created rule Click on Add 27 Click on Add under IP Filter List 28 Enter the name and the description for the New IP Filter List Uncheck...

Page 13: ...dress for the Source address Uncheck the Mirrored Option at the bottom of the screen Select A specific IP subnet for the Destination address and enter the Internal LAN range on the DI 804V side Click...

Page 14: ...uide Page 14 32 Click on the Filter Action Tab Select Require Security You don t need to click on Edit 33 Click on Connection Type Tab Select All network connections 34 Click on Tunnel Setting Tab Spe...

Page 15: ...VPN Client Configuration Guide Page 15 35 Click on Authentication Methods Tab Click on Kerberos and then Click on Edit 36 Select Use this string to protect the key exchange preshared key Type in the P...

Page 16: ...VPN Client Configuration Guide Page 16 38 Select the newly created rule Right Single User Click Close 39 Click on the General Tab and then the Advanced Button 40 Check the Master key Perfect Forward...

Page 17: ...ith Windows 2000 XP IPsec VPN Client Configuration Guide Page 17 41 Move the IKE 3DES MD5 to the top Click OK 42 Click OK 43 Click Close 44 Right click on the new policy and select Assign to activate...

Page 18: ...you will get a reply 46 Please note that if you make any changes to the IPsec policy you will need to Restart the IPsec Policy Agent in order for the changes to take effect You can do this by going in...

Page 19: ...8 In Windows XP you can monitor the IPsec tunnel by adding the IP Security Monitor Snap IP You can do this by going into File Add Remove Snap In Click Add Select IP Security Monitor You can check unde...

Reviews: