Draytek Vigor2920 Series User Manual page 217

Dual-wan security router
Hide thumbs Also See for Vigor2920 Series:
Table of Contents

Advertisement

Item
Allowed Dial-In Type
IKE Authentication
Method
Description
Determine the dial-in connection with different types.
PPTP - Allow the remote dial-in user to make a PPTP VPN
connection through the Internet. You should set the User Name
and Password of remote dial-in user below.
IPSec Tunnel- Allow the remote dial-in user to trigger an
IPSec VPN connection through Internet.
L2TP with IPSec Policy - Allow the remote dial-in user to
make a L2TP VPN connection through the Internet. You can
select to use L2TP alone or with IPSec. Select from below:
None - Do not apply the IPSec policy. Accordingly, the
VPN connection employed the L2TP without IPSec
policy can be viewed as one pure L2TP connection.
Nice to Have - Apply the IPSec policy first, if it is
applicable during negotiation. Otherwise, the dial-in VPN
connection becomes one pure L2TP connection.
Must - Specify the IPSec policy to be definitely applied
on the L2TP connection.
Specify Remote VPN Gateway - You can specify the IP
address of the remote dial-in user or peer ID (should be the
same with the ID setting in dial-in type) by checking the box.
Also, you should further specify the corresponding security
methods on the right side. If you uncheck the checkbox, the
connection type you select above will apply the authentication
methods and security methods in the general settings.
User Name - This field is applicable when you select PPTP or
L2TP with or without IPSec policy above.
Password - This field is applicable when you select PPTP or
L2TP with or without IPSec policy above.
VJ Compression - VJ Compression is used for TCP/IP
protocol header compression. This field is applicable when you
select PPTP or L2TP with or without IPSec policy above.
This group of fields is applicable for IPSec Tunnels and L2TP
with IPSec Policy when you specify the IP address of the
remote node. The only exception is Digital Signature (X.509)
can be set when you select IPSec tunnel either with or without
specify the IP address of the remote node.
Pre-Shared Key - Check the box of Pre-Shared Key to invoke
this function and type in the required characters (1-63) as the
pre-shared key.
Digital Signature (X.509) –Check the box of Digital Signature
to invoke this function and select one predefined Profiles set in
the VPN and Remote Access >>IPSec Peer Identity.
Local ID – Specify which one will be inspected first.
Alternative Subject Name First – The alternative
subject name (configured in Certificate
Management>>Local Certificate) will be inspected
209
Vigor2920 Series User's Guide

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Vigor2920nVigor2920vn

Table of Contents