Draytek vigor2920 series User Manual page 264

Dual-wan security router
Hide thumbs Also See for vigor2920 series:
Table of Contents

Advertisement

Item
VPN Dial-Out
Through
Always On
Pre-Shared Key
Digital Signature
(X.509)
IPSec Security
Method
User Name
Password
Vigor2920 Series User's Guide
Description
Use the drop down menu to choose a proper WAN interface
for this profile. This setting is useful for dial-out only.
WAN1 First/ WAN2 First/ WAN3 First - While connecting,
the router will use WAN1/WAN2/WAN3 as the first channel
for VPN connection. If WAN1/WAN2/WAN3 fails, the router
will use another WAN interface instead.
WAN1 Only /WAN2 Only/WAN 3 Only- While connecting,
the router will use WAN1/WAN2/WAN3 as the only channel
for VPN connection.
WAN1 Only: Backup WAN2/WAN2 Only: Backup WAN1
- While connecting, the router will use WAN1/WAN2 as the
only channel for VPN connection. If WAN1/WAN2 fails, the
router will use backup WAN2/backup WAN1 interface
instead.
Check to enable router always keep VPN connection.
IKE Authentication Method usually applies to those are
remote dial-in user or node (LAN to LAN) which uses
dynamic IP address and IPSec-related VPN connections such
as L2TP over IPSec and IPSec tunnel.
Pre-Shared Key- Specify a key for IKE authentication.
Confirm Pre-Shared Key-Confirm the pre-shared key.
Click Digital Signature to invoke this function. Use the drop
down list to choose one of the certificates for using. You have
to configure one certificate at least previously in Certificate
Management >> Local Certificate. Otherwise, the setting
you choose here will not be effective.
Peer ID – Choose the peer ID selection from the drop down
list.
Local ID – Choose Alternative Subject Name First or
Subject Name First.
Medium - Authentication Header (AH) means data will be
authenticated, but not be encrypted. By default, this option is
active.
High - Encapsulating Security Payload (ESP) means payload
(data) will be encrypted and authenticated. You may select
encryption algorithm from Data Encryption Standard (DES),
Triple DES (3DES), and AES.
This field is used to authenticate for connection when you
select PPTP or L2TP with or without IPSec policy above.
This field is used to authenticate for connection when you
254

Advertisement

Table of Contents
loading

Table of Contents