Modem Router With Fqdn To Gateway B; Configuration Profile - NETGEAR DGN2200v3 User Manual

N300 wireless adsl2+ modem router
Hide thumbs Also See for DGN2200v3:
Table of Contents

Advertisement

Modem Router with FQDN to Gateway B

This section is a case study on how to configure a VPN tunnel from a NETGEAR modem
router to a gateway using a fully qualified domain name (FQDN) to resolve the public address
of one or both routers. This case study follows the VPN Consortium interoperability profile
guidelines (found at http://www.vpnc.org/InteropProfiles/Interop-01.html).

Configuration Profile

The configuration in this section follows the addressing and configuration mechanics defined
by the VPN Consortium. Gather the necessary information before you begin configuration.
Verify that the firmware is up to date, and that you have all the addresses and parameters to
be set on both sides. Check that there are no firewall restrictions.
10.506.0/24
Gateway A
(DGN2200)
LAN IP
10.5.6.1
Figure 16. VPNC Example, Network Interface Addressing
VPN Consortium Scenario
Type of VPN
Security scheme:
IP addressing:
NETGEAR-Gateway A
NETGEAR-Gateway B
Using a Fully Qualified Domain Name (FQDN)
Many ISPs provide connectivity to their customers using dynamic instead of static IP
addressing. This means that a user's IP address does not remain constant over time, which
presents a challenge for gateways attempting to establish VPN connectivity.
A Dynamic DNS (DDNS) service allows a user whose public IP address is dynamically
assigned to be located by a host or domain name. It provides a central public database
where information (such as e-mail addresses, host names, and IP addresses) can be stored
and retrieved. Now, a gateway can be configured to use a third-party service instead of a
permanent and unchanging IP address to establish bi-directional VPN connectivity.
N300 Wireless ADSL2+ Modem Router DGN2200v3
Internet
WAN IP
example.org
(FQDN)
Scenario 1
LAN-to-LAN or gateway-to-gateway (not PC/client-to-gateway)
IKE with preshared secret/Key (not certificate based)
Fully qualified domain name (FQDN)
FDQN
VPN Configuration
149
Gateway B
WAN IP
example2.org
(FQDN)
172.23.9.0/24
LAN IP
172.23.9.1

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents