Multitech RouteFinder RF820 Reference Manual

Soho internet security appliance, ipsec vpn setup examples
Hide thumbs Also See for RouteFinder RF820:

Advertisement

Quick Links

®
RouteFinder
SOHO Internet Security Appliance
RF820 / RF830
IPSec VPN Setup Examples
Reference Guide

Advertisement

Table of Contents
loading

Summary of Contents for Multitech RouteFinder RF820

  • Page 1 ® RouteFinder SOHO Internet Security Appliance RF820 / RF830 IPSec VPN Setup Examples Reference Guide...
  • Page 2 Furthermore, Multi-Tech Systems, Inc. reserves the right to revise this publication and to make changes from time to time in the content hereof without obligation of Multi-Tech Systems, Inc. to notify any person or organization of such revisions or changes. Revision...
  • Page 3: Table Of Contents

    Step 1 -- Network Setup ...28 Step 2 – Packet Filters...29 Step 3 – VPN Setup...29 Chapter 3 – A Reference Table of Commonly Supported Subnets...32 Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 1 – Non-NAT Setup Examples Contents...
  • Page 4: Chapter 1 - Non-Nat Setup Examples

    Enter the Shared Secret in Preshared Key for your network (the Secret has to match on both ends). Then Confirm the shared secret by retyping the shared secret. For IKE Authentication choose MD5. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 1 – Non-NAT Setup Examples Examples...
  • Page 5: Prerequisite Step 2 - Phase 2 Setup

    (e.g., 192.168.25.0) and the Subnet Mask (e.g., 255.255.255.0). If it’s a single IP address, change it to that address. For ESP Authentication choose MD5. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 1 – Non-NAT Setup Examples...
  • Page 6: Example 1 - Set Up A Routefinder And A Vpn Client Behind A Non-Nat Device

    Note: Pictured below is an RF820 screen with the single WAN ports. The RF830 screen is the same except for the addition of WAN2 and WAN2Interface Names. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 1 – Non-NAT Setup Examples...
  • Page 7 Click the Add button to add this Packet Filter rule. Important Note: Do not check the Status box. When adding a user-defined rule, leave the Status box unchecked. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 1 – Non-NAT Setup Examples...
  • Page 8 Remote LAN: Select vpn-client. Note that you select Any if the Remote Client is dynamic. Click the Save button to save your tunnel. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 1 – Non-NAT Setup Examples...
  • Page 9 You will also see information about the data, if any, that is being sent across the tunnel. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 1 – Non-NAT Setup Examples...
  • Page 10: Example 2 - A Setup Using Two Routefinders Behind A Non-Nat Device

    Remote-LAN Once the network configuration is complete, the information about that network displays at the bottom of the screen. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 1 – Non-NAT Setup Examples Side B 65.126.90.248 255.255.255.255...
  • Page 11 Click the VPN Status check box to enable IPSec. Then click the Save button. Select Add an IKE Connection by clicking the corresponding Add button. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 1 – Non-NAT Setup Examples...
  • Page 12 Make sure to check the Status box at the bottom of the screen on the left side to activate the newly created tunnel. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 1 – Non-NAT Setup Examples...
  • Page 13 To see if the tunnel is up you can click on Statistics & logs and go to the IPSec Live Log. You will see the connection up; and if any data is being sent across, you will see that information here. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide...
  • Page 14 Pictured below is an RF820 screen with the one WAN port. The RF830 screen is the same except for the addition of the WAN2 and WAN2Interface Names. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 1 – Non-NAT Setup Examples...
  • Page 15 Click the VPN Status check box to enable IPSec. Then click the Save button. Select Add an IKE Connection by clicking the corresponding Add button. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 1 – Non-NAT Setup Examples...
  • Page 16 Make sure to check the Status box at the bottom of the screen on the left side to activate the newly created tunnel. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 1 – Non-NAT Setup Examples...
  • Page 17 To see if the tunnel is up you can click on Statistics & Logs and go to the IPSec Live Log. You will see whether or not the connection is up. You will also see the information, if any, about the data being sent across the tunnel. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide...
  • Page 18: Chapter 2 - Nat Setup Examples

    Then Confirm the shared secret by entering the Shared Secret again. For IKE Authentication choose MD5. Click the P1 Advanced button. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 2 – Behind NAT Setup Examples...
  • Page 19: Prerequisite Step 2 - Client Phase 1 Advanced Setup (Behind Nat)

    Then enter the IP address of the RouteFinder in the Set the value for the ID field. Example: 65.126.90.248 Click OK. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 2 – Behind NAT Setup Examples...
  • Page 20: Prerequisite Step 3 - Client Phase 2 Setup (Behind Nat)

    Mask (Ex. 255.255.255.0). If it’s a single IP address, change it to that address. For ESP Authentication choose MD5. Click OK. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 2 – Behind NAT Setup Examples...
  • Page 21: Example 1 - Set Up A Routefinder With A Tunnel To A Client Behind A Nat Device

    Note: Pictured below is an RF820 screen with the single WAN ports. The RF830 screen is the same except for the addition of WAN2 and WAN2Interface Names. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 2 – Behind NAT Setup Examples...
  • Page 22: Step 2 - Packet Filters

    Click on the VPN Status check box to enable IPSec. Then click the Save button. Select Add an IKE Connection by clicking the corresponding Add button. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 2 – Behind NAT Setup Examples...
  • Page 23 Make sure to check the Status box at the bottom of the screen on the left side to activate the newly created tunnel. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 2 – Behind NAT Setup Examples...
  • Page 24 To see if the tunnel is up you can click on Statistics & logs and go to the IPSec Live Log. You will see the connection up; and if any data is being sent across, you will see that information here. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide...
  • Page 25: Example 2 - Set Up Two Routefinders Behind A Nat Device

    Remote-LAN Once the network configuration is complete, the information about that network displays at the bottom of the screen. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 2 – Behind NAT Setup Examples Side B 65.126.90.248...
  • Page 26: Step 2 - Packet Filters

    Click the Add button to add this Packet Filter rule. Important Note: Do not check the Status box. When adding a user-defined rule, leave the Status box unchecked. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 2 – Behind NAT Setup Examples...
  • Page 27: Step 3 -- Vpn Setup

    Remote ID: Enter IP Address of the remote device that is at the other end of the VPN tunnel. Click the Save button to save your tunnel. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 2 – Behind NAT Setup Examples...
  • Page 28: Example 3 - Set Up The Routefinder Going To A Vpn Behind A Nat Device

    Note: Pictured below is an RF820 screen with the single WAN ports. The RF830 screen is the same except for the addition of WAN2 and WAN2Interface Names. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 2 – Behind NAT Setup Examples...
  • Page 29: Step 2 - Packet Filters

    Click on the VPN Status check box to enable IPSec. Then click the Save button. Select Add an IKE Connection by clicking the corresponding Add button. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 2 – Behind NAT Setup Examples...
  • Page 30 Make sure to check the Status box at the bottom of the screen on the left side to activate the newly created tunnel. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 2 – Behind NAT Setup Examples...
  • Page 31 You can check the status of your VPN tunnel by clicking on Statistics & Logs and going to the IPSec Live Log. You will see the connection up (if connected), and you will see the statistics related to the data being sent across the tunnel. Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide...
  • Page 32: Chapter 3 - A Reference Table Of Commonly Supported Subnets

    N.N.N.128 N.N.N.136 N.N.N.144 N.N.N.152 N.N.N.160 N.N.N.168 N.N.N.176 N.N.N.184 Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 3 – A Reference Table of Commonly Supported Subnets Hosts Available Broadcast Address N.N.N.1-126 N.N.N.127 N.N.N.129-254 N.N.N.255 Hosts Available Broadcast Address N.N.N.1-62...
  • Page 33 N.N.N.216 N.N.N.220 N.N.N.224 N.N.N.228 N.N.N.232 N.N.N.236 N.N.N.240 N.N.N.244 N.N.N.248 N.N.N.252 Multi-Tech Systems, Inc. RF820/830 IPSec VPN Setup Examples – A Reference Guide Chapter 3 – A Reference Table of Commonly Supported Subnets N.N.N.193-198 N.N.N.199 N.N.N.201-206 N.N.N.207 N.N.N.209-214 N.N.N.215 N.N.N.217-222 N.N.N.223 N.N.N.225-230...

This manual is also suitable for:

Routefinder rf830

Table of Contents