SETUP
Page 30
DOC_DEV_Router setup guide_A
•
Select the Enable checkbox.
•
Select the Advanced parameters checkbox if a preshared key is used and if intermediate routers translate
the source P address.
•
Assign a name to the connection.
The different IP addresses used during the set-up are described by the drawing below.
Current router
Remote router
192.168.1.0
10.10.10.7
10.10.10.100
192.168.2.0
255.255.255.0
255.255.255.0
« Authentication » parameter :
Select preshared key or certificate.
« Connection » parameter :
Select Initiator if the current router is supposed to initiate the VPN.
Authentication section
–
Case 1 : Use of a certificate
Remark : Both certificates must be delivered by the same authority
« My SubjectAlt name » parameter:
Enter the 'SubjectAltName' value of the active certificate of the current router.
If the active certificate is an ETIC TELECOM certificate, that field is the email field.
Remote « SubjectAlt name » parameter :
Enter the 'SubjectAltName' value of the active certificate of the remote router.
If the active certificate is an ETIC TELECOM certificate, that field is the email field.
Authentication section
–
Case 2 : Use of a preshared key
« Preshared key » and « Passwords match » parameter :
Enter and confirm the preshared key.
The maximum length of the key is 40 characters.
« Local IKE ID» & « Peer IKE ID » parameters :
That identifiers make possible to set a preshared key VPN even if intermediate routers modify the source IP
address.
The router receiving an IP frame checks the IKE ID of the remote router in place of its source IP address.
Network section
« Remote LAN IP address » & «
Remote LAN Netmask” parameters :
Enter the IP address and netmask of the remote LAN network
192.168.2.0 & 255.255.255.0 of the drawing below
Содержание RAS Series
Страница 1: ...DOC_DEV_Router setup guide_A RAS IPL SIG _________________ SETUP GUIDE _________________ ...
Страница 8: ......
Страница 14: ......