724-746-5500 | blackbox.com
Page 85
Chapter 8: Virtual Private Networks
- IKE Encryption Protocol: 3DES
- IKE Authentication Protocol: SHA1
- IKE DH [Diffie–Hellman] Group: Group2
• Phase 2 (uses perfect forward secrecy):
- ESP Encryption Protocol: 3DES
- ESP Authentication Protocol: SHA1
- ESP DH [Diffie–Hellman] Group: Group2
- DPD [Dead Peer Detection] Action: Restart
- DPD [Dead Peer Detection] Delay: 20s [seconds]
- DPD [Dead Peer Detection] Timeout: 120s [seconds]
- Re-Key: No
- Re-Auth: No
- Responder: No (This means that the local WRT4000 Series Cellular Wireless Router will initiate the tunnel.)
7. When you have finished configuring IPsec defaults, select the Save & Apply button in the lower right corner of the screen.
• The IPsec defaults are saved, and the List of Configured IPsec VPN Tunnels is redisplayed (recall Figure 8-3).
8. When you have configured all VPN tunnels for the WRT4000 Series Cellular Wireless Router, select the Save & Apply button
under Modifications and Additions (at the lower right of the screen for the List of Configured IPsec VPN Tunnels).
NOTE: The router at the other end of the VPN tunnel must also be configured for this connection.
9. Do one of the following:
a. If this is the first IPsec VPN activity since system start-up, select the IPSEC Start button (at the lower left of the management
window).
b. If IPsec VPN tunnels are already running, select the IPSEC Restart button.
• In either case, the new IPsec VPN tunnel is started.
NOTE: After the IPsec Start button has been selected, you can select a VPN tunnel’s Tunnel Down button to bring that tunnel
down. Then you can select its Tunnel Up button to restart the VPN tunnel.
You can use the IPsec Stop button to stop all VPN tunnels. (The VPN packet transmissions will be dropped.) When you are ready
to resume use of the tunnels, select the IPsec Restart button to re-initiate all IPsec VPN tunnels.
8.1.2 Starting the Tunnel
If you performed step 9a or step 9b in the procedure for Configuring VPNs on the WRT4000 Series Router, the tunnel is already
up, and you may skip this section.
1. In the List of Configured IPsec VPN Tunnels (recall Figure 5-3), select the Tunnel Up button in the row for the tunnel named
Tunnel 01.
• The selected VPN tunnel (Tunnel 01) is started.
8.2 Testing and Tracking VPN Connections
8.2.1 Testing VPN Connections
Do the following to test a VPN Connection:
1. Open a browser and log into the WRT4000 Series Cellular Wireless Router.
NOTE: For details, see Section 4.1.3, Logging In, in Chapter 4, Configuration.
Содержание WRT4000-ANT
Страница 141: ...724 746 5500 blackbox com Page 141 NOTES...
Страница 142: ...724 746 5500 blackbox com Page 142 NOTES...
Страница 143: ...724 746 5500 blackbox com Page 143 NOTES...