Edge-Core VR-100 User Manual
Edge-Core VR-100 User Manual

Edge-Core VR-100 User Manual

8-port dual-wan

Advertisement

Quick Links

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the VR-100 and is the answer not in the manual?

Questions and answers

Subscribe to Our Youtube Channel

Summary of Contents for Edge-Core VR-100

  • Page 2: Table Of Contents

    VR-100 8-Port Dual-WAN VPN Router Table of Contents Introduction ................1 Main features: ......................3 Dual WAN ............................3 Firewall Security ..........................3 VPN Support............................3 Networking ............................4 Network Management........................5 How To Install ............... 6 Hardware Features: ....................6 Feature List............................6 LED Status............................
  • Page 3 VR-100 8-Port Dual-WAN VPN Router Advanced Setting ....................29 DMZ Host............................29 Forwarding ............................29 UPnP..............................32 Routing............................. 33 One-to-One NAT..........................35 DDNS............................... 37 MAC Clone............................39 DHCP ........................40 Setup..............................40 Status............................... 42 Tool ...........................43 SNMP............................... 43 Diagnostic ............................44 Restart ............................. 46 Factory Default ..........................
  • Page 4: Introduction

    VR-100 8-Port Dual-WAN VPN Router 1. Introduction 10/100 8-Port Dual-WAN VPN Router contains two WAN ports and eight Ethernet 10/100 LAN ports and mainly supports small and medium size enterprise business network with a high security VPN. The router brings high-speed network security to enterprise businesses, remote users, service providers, and data centers.
  • Page 5 VR-100 8-Port Dual-WAN VPN Router is flexible, effective, and easy to use. Furthermore, network administrators can easily control, manage and monitor the network’s conditions through this web-based interface. • 2 •...
  • Page 6: Main Features

    VR-100 8-Port Dual-WAN VPN Router Main features: Dual WAN Smart Link Backup Load Balance (Auto Mode) Network Service Detection Protocol Binding Firewall Security Firewall Throughput: up to 100 Mbps (Uni-directional) IP filtering; allows you to configure IP address filters Port filtering; allows you to configure TCP/UDP port filters...
  • Page 7: Networking

    VR-100 8-Port Dual-WAN VPN Router IKE: Pre-Shared keys IPSec Encryption DES/3DES/AES IPSec Authentication MD5/SHA1 Support PMTU DPD detection View Log Networking Concurrent Sessions: up to 20,000 Dedicated DMZ DHCP Client/Server, dynamic IP, static IP support TCP/IP IP Routing PPPoE NAT with popular ALG support...
  • Page 8: Network Management

    VR-100 8-Port Dual-WAN VPN Router Port-based QoS Network Management Comprehensive web based management and policy setting SNMP v1/v2c Firmware upgrade through Web browser Monitoring, Logging, and Alarms of system activities Locate and configure all device with the same subnet • 5 •...
  • Page 9: How To Install

    VR-100 8-Port Dual-WAN VPN Router 2. How To Install Hardware Features: Feature List 2 RJ-45 10/100Base-T Ethernet Ports 8 RJ-45 10/100Base-T Ethernet ports Intel IXP425-533 MHz SDRAM 32 Mbytes SDRAM Flash ROM 16 Mbytes Flash Internal Power Input: AC100~240V, 0.4A ; Output: DC3.3V / 3A...
  • Page 10: Led Status

    VR-100 8-Port Dual-WAN VPN Router LED Status Color Description Power Green Green On: Power On Orange On: System not ready and the Router goes through its self-diagnostic mode DIAG Orange Orange Off: System ready and the Router completes the diagnosis successfully...
  • Page 11: Physical Setup Of The Router

    VR-100 8-Port Dual-WAN VPN Router Physical Setup of the Router: You can set the Router on a desktop, install it in a rack with attached brackets, or mount it on the wall. Set the Router on a desktop or other flat, secure surface.
  • Page 12: Connecting The 8-Port Dual-Wan Vpn Router To Your Network

    VR-100 8-Port Dual-WAN VPN Router Connecting the 8-Port Dual-WAN VPN Router to your Network: The figures describe the integration of the 8-Port Dual-WAN VPN Router into the network. Figure1: Dual WAN Figure2: DMZ • 9 •...
  • Page 13 VR-100 8-Port Dual-WAN VPN Router The Router is a network device that connects two networks together. Set up WAN connection: WAN port can be connected to a modem, hub, switch or to a router. Set up LAN connection: LAN port can be connected to a hub, switch or to a computer directly.
  • Page 14: How To Manage

    VR-100 8-Port Dual-WAN VPN Router 3. How To Manage Login Enter User Name and Password in the blank area, and then click OK. The Router's default User Name and Password is 'admin' when you first power up the Router. Sitemap Click Sitemap button to view the sitemap.
  • Page 15: Home

    VR-100 8-Port Dual-WAN VPN Router Home The Home screen displays the router’s current status and settings. This information is read only. If you click the button with underline, it will hyperlink to related setup pages. System Information Serial Number: The serial number of the 8-Port Dual-WAN VPN Router unit.
  • Page 16: Port Statistics

    Flash: The size of Flash on the board. It is 16MB. Current Time It shows current time. There is one thing that should be noticed. Users should correctly synchronize the time with a remote NTP server and VR-100 will show the exact time. Port Statistics Users can click the port number from port diagram to see the status of the selected port.
  • Page 17: General Setting Status

    VR-100 8-Port Dual-WAN VPN Router General Setting Status LAN IP: It shows the current IP Address of the Router, as seen by internal users on the Internet, and hyperlinks to LAN Setting in General Setting page. WAN1 IP: It shows the current WAN1 IP Address of the Router, as seen by external users on the Internet and hyperlinks to WAN Connection type in Setup page.
  • Page 18: Advance Setting Status

    VR-100 8-Port Dual-WAN VPN Router click Release button to release the IP that users have already got and click Renew button to update the DHCP Lease Time or get a new IP. When users select PPPoE or PPTP, and it shows Connect / Disconnect.
  • Page 19: Vpn Setting Status

    VR-100 8-Port Dual-WAN VPN Router SPI (Stateful Packet Inspection): It shows the status (On/Off) and hyperlinks to the General in Firewall page. DoS (Deny of Service): It shows the status (On/Off) and hyperlinks to the General in Firewall page. Block WAN Request: It shows the status (On/Off) and hyperlinks to the Block WAN Request in Firewall page.
  • Page 20: Log Setting Status

    VR-100 8-Port Dual-WAN VPN Router Log Setting Status: It hyperlinks to System Log of Log page If you have not set up the mail server in Log page, it shows “E-mail cannot be sent because you have not specified an outbound SMTP server address.”...
  • Page 21: General Setting

    VR-100 8-Port Dual-WAN VPN Router General Setting The General Setting screen contains all of the router’s basic setup functions. For most users, the default values for the device should be satisfactory. The device can be used in most network settings without changing any of the values. Some users will need to enter additional information in order to connect to the Internet through an ISP (Internet Service Provider) or broadband (DSL, cable modem) carrier.
  • Page 22: Lan Setting

    VR-100 8-Port Dual-WAN VPN Router LAN Setting This is the Router’s LAN IP Address and Subnet Mask. The default value is 192.168.1.1 for IP address and 255.255.255.0 for the Subnet Mask. Dual-WAN / DMZ Setting Before choosing the following WAN Connection Type, please choose the Dual-WAN / DMZ Setting first.
  • Page 23 VR-100 8-Port Dual-WAN VPN Router Specify DMZ IP Address: Enter the DMZ IP Address. Subnet Mask: Enter the Subnet Mask. Range: If select Range, DMZ and WAN will be at the same Subnet. IP Range for DMZ Port: Enter the DMZ IP Address and Subnet Mask.
  • Page 24 VR-100 8-Port Dual-WAN VPN Router Static IP: If you have specified WAN IP Address, Subnet Mask, Default Gateway Address and DNS Server, select Static IP. You can get this information from your ISP. PPPoE (Point-to-Point Protocol over Ethernet): You have to check with your ISP to make sure whether PPPoE should be enabled or not. If they do use PPPoE: Enter your Username and Password.
  • Page 25 VR-100 8-Port Dual-WAN VPN Router particularly when it has been idle for a period longer than the Max Idle Time setting. If you select Keep Alive option, the Router will keep the connection alive by sending out a few data packets at Redial Period, so your Internet service thinks that the connection is still alive.
  • Page 26: Dual Wan

    VR-100 8-Port Dual-WAN VPN Router Dual WAN There are two functions provided for users – Smart Link Backup and Load Balance (Auto Mode). If users select DMZ in setup page, users could not change the Dual WAN setting here. If Smart Link Backup is selected, users only need to decide which WAN port is primary and then the other will be the backup.
  • Page 27 VR-100 8-Port Dual-WAN VPN Router Firstly, enter The Max. Bandwidth of Upstream and Downstream for WAN1 and WAN2 provided by ISP. Network Service Detection: This tool can detect the network connection status of ISP by pinging Default Gateway, ISP Host and Remote Host. If you check this Detection, you have to choose at least one option from the following three items.
  • Page 28 VR-100 8-Port Dual-WAN VPN Router When Fail: Generate the Error Condition in the System Log: The Router will generate the System Log when ping fails to inform users that the ISP connection is disconnected. Remove the Connection: This WAN Interface will be suspended when the network connection to ISP is not active.
  • Page 29 VR-100 8-Port Dual-WAN VPN Router Source IP: Users can specify the internal IP to go through the specific WAN port. If users need the Service Binding only, entering zero in Source IP filed is suggested. Destination IP: Users can specify the specific Service from the internal Source IP to Destination IP going through the specific WAN port, and enter the Destination IP.
  • Page 30: Password

    VR-100 8-Port Dual-WAN VPN Router Password The Router's default password is 'admin', and it is strongly recommended that you change the Router's password. If you leave the password filed blank, all users on your network will be able to access the Router simply by entering the unit’s IP address into their web browser’s location window.
  • Page 31 VR-100 8-Port Dual-WAN VPN Router automatically update the Content Filter List, and for other internal purposes. Set the local time using Network Time Protocol (NTP) automatically or manually. Automatically: Select the Time Zone and enter the Daylight Saving and NTP Server. The default Time Zone is Greenwich Mean Time.
  • Page 32: Advanced Setting

    VR-100 8-Port Dual-WAN VPN Router Advanced Setting DMZ Host The DMZ (Demilitarized Zone) Host feature allows one local user to be exposed to the Internet to use a special-purpose service such as Internet gaming and video-conferencing. Enter the DMZ Private IP Address to access DMZ Host settings. The Default value zero (0) will deactivate DMZ Host.
  • Page 33 VR-100 8-Port Dual-WAN VPN Router Port Range Forwarding: Select the Service from the pull-down menu. If the Service you need is not listed in menu, please click the Service Management button to add new Service and enter the Protocol and Port Range. Then click the Save Setting button.
  • Page 34 VR-100 8-Port Dual-WAN VPN Router enable the entry. Click the Add to List button, and configure as many entries as you would like. You can also Delete the selected application. Port Triggering Some Internet applications or games use alternate ports to communicate between server and LAN host.
  • Page 35: Upnp

    VR-100 8-Port Dual-WAN VPN Router UPnP UPnP forwarding can be used to set up public services on your network. Windows XP can modify those entries via UPnP when UPnP function is enabled by selecting Yes. Users have to click the Service Management first to enter the Service Name, Protocol and External Port and Internal Port, and then Add to list and Save Settings.
  • Page 36: Routing

    VR-100 8-Port Dual-WAN VPN Router Routing Dynamic Routing The Router's dynamic routing feature can be used to automatically adjust to physical changes in the network's layout. The Router uses the dynamic RIP protocol. It determines the route that the network packets take based on the fewest number of hops between the source and the destination.
  • Page 37 VR-100 8-Port Dual-WAN VPN Router Static Routing You will need to configure Static Routing if there are multiple routers installed on your network. The static routing function determines the path that data follows over your network before and after it passes through the Router. You can use static routing to allow different IP domain users to access the Internet through this device.
  • Page 38: One-To-One Nat

    VR-100 8-Port Dual-WAN VPN Router Enter the following data to create a static route entry: Destination IP: Enter the network address of the remote LAN segment. For a standard Class C IP domain, the network address is the first three fields of the Destination LAN IP, while the last field should be zero.
  • Page 39 VR-100 8-Port Dual-WAN VPN Router Consider a LAN for which the ISP has assigned the IP addresses range from 209.19.28.16 to 209.19.28.31, with 209.19.28.16 used as the 8-Port Dual-WAN VPN Router WAN IP (NAT Public) Address. The address range of 192.168.168.1 to 192.168.168.255 is used for the machines on the LAN.
  • Page 40: Ddns

    VR-100 8-Port Dual-WAN VPN Router Dual-WAN VPN Router WAN IP (NAT Public) Address may not be included in the range. Range Length: Enter the number of IP addresses for the range. The range length may not exceed the number of valid IP address. Up to 64 ranges may be added. To map a single address, use a Range Length of 1.
  • Page 41 VR-100 8-Port Dual-WAN VPN Router DDNS Service: The DDNS feature is disabled by default. To enable this feature, just select DynDNS.org from the pull-down menu, and enter the Username, Password, and Host Name of the account you set up with DynDNS.org or 3322.org.
  • Page 42: Mac Clone

    VR-100 8-Port Dual-WAN VPN Router MAC Clone Some ISPs require that you register a MAC address. This "clones" your network adapter's MAC address onto the Cable/DSL Firewall Router, and prevents you from having to call your ISP to change the registered MAC address to the Cable/DSL Firewall Router's MAC address.
  • Page 43: Dhcp

    VR-100 8-Port Dual-WAN VPN Router DHCP Setup The Router can be used as a DHCP (Dynamic Host Configuration Protocol) server on your network. A DHCP server assigns available IP addresses to each computer on your network automatically. If you choose to enable the DHCP server option, you must configure all of the PCs on your LAN to connect to a DHCP server.
  • Page 44 VR-100 8-Port Dual-WAN VPN Router If the Router's DHCP server function is disabled, you have to carefully configure the IP address, Mask, and DNS settings of every computer on your network. Be careful not to assign the same IP Address to different computers.
  • Page 45: Status

    VR-100 8-Port Dual-WAN VPN Router Status A Status page is available to review DHCP Server Status. The DHCP Server Status reports the IP of DHCP Server, the number of Dynamic IP Used, Dynamic IP Used, Static IP Used, DHCP Available and Total.
  • Page 46: Tool

    VR-100 8-Port Dual-WAN VPN Router Tool SNMP SNMP, Simple Network Management Protocol, is a network protocol that provides network administrators with the ability to monitor the status of the 8-Port Dual-WAN VPN Router and receive notification of any critical events as they occur on the network. The 8-Port Dual-WAN VPN Router supports SNMP v1/v2c and all relevant Management Information Base II (MIBII) groups.
  • Page 47: Diagnostic

    VR-100 8-Port Dual-WAN VPN Router System Contact: Type in the name of the network administrator for the 8-Port Dual-WAN VPN Router. System Location: The network administrator's contact information is placed into this field. Type in an E-mail address, telephone number, or pager number.
  • Page 48 VR-100 8-Port Dual-WAN VPN Router Enter the host name to lookup in the Look up the name field and click the Go button. Do not add the prefix ; otherwise the result will be Address Resolving Failed. 8-Port Dual-WAN http:// VPN Router will then query the DNS server and display the result at the bottom of the screen.
  • Page 49: Restart

    VR-100 8-Port Dual-WAN VPN Router Note: Ping requires an IP address. 8-Port Dual-WAN VPN Router’s DNS Name Lookup tool may be used to find the IP address of a host. Restart The recommended method of restarting your 8-Port Dual-WAN VPN Router is to use this "Restart"...
  • Page 50: Firmware Upgrade

    VR-100 8-Port Dual-WAN VPN Router restore 8-Port Dual-WAN VPN Router to its factory state. Only use this feature if you wish to discard all other configuration preferences. Firmware Upgrade Users can use the following download function to download the new version of firmware into computer in advance, and then select the file.
  • Page 51 VR-100 8-Port Dual-WAN VPN Router Import Configuration File: You will need to specify where your preferences file is located. When you click "Browse", your browser will bring up a dialog which will allow you to select a file which you had previously saved using the "Export Settings"...
  • Page 52: Port Management

    VR-100 8-Port Dual-WAN VPN Router Port Management In this router, users can configure the connection status for each port, such as Priority, Speed, Duplex, and Auto-Negotiation. Port Setup Basic Per Port Config. Port Disable: Check the box, the port will be disabled. It is a per-port setting.
  • Page 53: Port Status

    VR-100 8-Port Dual-WAN VPN Router Duplex: Users can manually config the per-port duplex as half-duplex or full-duplex. Auto-negotiation: If enable this function, every port can be set as auto-negotiation. Users will not need to set up speed and duplex. Click the Apply button to save the LAN Port settings or click the Cancel button to undo your changes.
  • Page 54 VR-100 8-Port Dual-WAN VPN Router In Statistics table, it will show the port receive/transmit packet count/packet byte count and Port Packet Error Count of the selected port. Click Refresh button to refresh the port status. • 51 •...
  • Page 55: Firewall

    VR-100 8-Port Dual-WAN VPN Router Firewall General From the Firewall Tab, you can configure the Router to deny or allow specific internal users from accessing the Internet. You can also configure the Router to deny or allow specific Internet users from accessing the internal servers. You can set up different packet filters for different users that are located on internal (LAN) side or external (WAN) side based on their IP addresses or their network Port number.
  • Page 56 VR-100 8-Port Dual-WAN VPN Router The Router's Firewall uses Stateful Packet Inspection to maintain connection information that passes through the firewall. It will inspect all packets based on the established connection, prior to passing the packets for processing through a higher protocol layer.
  • Page 57: Access Rules

    VR-100 8-Port Dual-WAN VPN Router to filter the Java Applets for security reason, but you may take the risk of not having access to Internet sites which created using this programming language if Java is blocked. Cookies: A cookie is data stored on your PC and used by Internet sites when you interact with them.
  • Page 58 VR-100 8-Port Dual-WAN VPN Router All traffic from the WAN to the LAN is denied. All traffic from the LAN to the DMZ is allowed. All traffic from the DMZ to the LAN is denied. All traffic from the WAN to the DMZ is allowed.
  • Page 59 VR-100 8-Port Dual-WAN VPN Router Besides the Default Rules, all configured Network Access Rules are listed in the table, and you can choose the Priority for each custom rule. Click the Edit button to edit the rule, and click the Trash Can icon to delete the rule.
  • Page 60: Add A New Rule

    VR-100 8-Port Dual-WAN VPN Router Add a new Rule Services Action: Select the Allow or Deny radio button depending on the intent of the rule. Service: Select the service from the Service pull-down menu. If the service you need is not listed in the menu, click the Service Management button to add new Service.
  • Page 61 VR-100 8-Port Dual-WAN VPN Router Log: Users can select Log packet to match this rule or Not log. Source Interface: Select the Source Interface (LAN, WAN1, WAN2, Any) from the pull-down menu. Once DMZ is enabled, the options will be LAN, WAN1, DMZ, Any.
  • Page 62: Content Filter

    VR-100 8-Port Dual-WAN VPN Router Content Filter Forbidden Domains When the Block Forbidden Domains check box is selected, the 8-Port Dual-WAN VPN Router will forbid web access to sites on the Forbidden Domains list. Scheduling The Time of Day feature allows you to define specific times when Content Filtering is enforced.
  • Page 63 VR-100 8-Port Dual-WAN VPN Router Always: When selected, Content Filtering is enforced at all times. From: When selected, Content Filtering is enforced during the time and days specified. Enter the time period, in 24-hour format, and select the day of the week that Content Filtering is enforced.
  • Page 64: Vpn

    VR-100 8-Port Dual-WAN VPN Router Summary The VPN Summary displays the Summary, Tunnel Status and GroupVPN Status. Summary: It shows the number of Tunnel(s) Used and Tunnel(s) Available. 8-Port Dual-WAN VPN Router supports up to 100 tunnels. Detail: Click the Detail button to see the detail of VPN Summary as below, and users can use the tools on the top to save, export or print the details of VPN Summary.
  • Page 65 VR-100 8-Port Dual-WAN VPN Router Tunnel Status: Add New Tunnel: Add Gateway to Gateway Tunnel or Add Client to Gateway Tunnel. Gateway to Gateway: The following figure illustrates the Gateway to Gateway tunnel, a tunnel created between two VPN Routers. When click “Add Now”, it will show Gateway to Gateway page.
  • Page 66 VR-100 8-Port Dual-WAN VPN Router Client to Gateway: The following figure illustrates the Client to Gateway tunnel, a tunnel created between the VPN Router and the Client user using VPN client software that supports IPSec. When click “Add Now”, it will show Client to Gateway page.
  • Page 67 VR-100 8-Port Dual-WAN VPN Router updated in Status. Configure: Edit and Delete : If you click Edit button, it will link to the original setup page. You can change the settings. If you click , all settings of this tunnel will be deleted, and this tunnel will be available.
  • Page 68: Gateway To Gateway

    VR-100 8-Port Dual-WAN VPN Router Gateway to Gateway By setting this page, users can add the new tunnel between two VPN devices. Tunnel No.: The tunnel number will be generated automatically from 1~100. Tunnel Name: Enter the Tunnel Name, such as LA Office, Branch Site, Corporate Site, etc.
  • Page 69 VR-100 8-Port Dual-WAN VPN Router IP + Domain Name (FQDN) Authentication: If you select this type, enter the FQDN (Fully Qualified Domain Name), and IP address will come out automatically. The FQDN is the host name and domain name for a specific computer on the Internet, for example, vpn.myvpnserver.com.
  • Page 70 VR-100 8-Port Dual-WAN VPN Router Dynamic IP + E-mail Addr. (USER FQDN) Authentication: If the Local Security Gateway is with a dynamic IP, you can select this type. When the Remote Security Gateway requests to create a tunnel with 8-Port Dual-WAN VPN Router, and the 8-Port Dual-WAN VPN Router will work as a responder.
  • Page 71 VR-100 8-Port Dual-WAN VPN Router Remote Group Setup Remote Security Gateway Type: There are five types. They are IP Only, IP + Domain Name (FQDN) Authentication, IP + E-mail Addr. (USER FQDN) Authentication, Dynamic IP + Domain Name (FQDN) Authentication, Dynamic IP + E-mail Addr. (USER FQDN) Authentication.
  • Page 72 VR-100 8-Port Dual-WAN VPN Router from drop-down menu. If you don’t know the static IP address of remote VPN device, but the domain name of remote VPN device is known, you can select IP by DNS Resolved, and enter the real domain name on the Internet. 8-Port Dual-WAN VPN Router will get the IP address of remote VPN device by DNS Resolved, and IP address of remote VPN device will be displayed on VPN Status of Summary page.
  • Page 73 VR-100 8-Port Dual-WAN VPN Router address. When the Remote Security Gateway requests to create a tunnel with 8-Port Dual-WAN VPN Router, and the 8-Port Dual-WAN VPN Router will work as a responder. If you select this type, just enter the Domain Name for Authentication, and the Domain Name must be same with the Local Gateway of the remote VPN device.
  • Page 74 VR-100 8-Port Dual-WAN VPN Router Subnet: If you select Subnet (which is the default), this will allow all computers on the remote subnet to access the tunnel. Enter the remote IP Address and the Subnet Mask. The default Subnet Mask is 255.255.255.0.
  • Page 75 VR-100 8-Port Dual-WAN VPN Router (Encapsulating Security Payload Protocol) header and enables the receiver and sender to select the SA, under which a packet should be processed. The hexadecimal value is acceptable, and the valid range is 100~ffffffff. Each tunnel must have a unique Inbound SPI and Outbound SPI.
  • Page 76 VR-100 8-Port Dual-WAN VPN Router IKE with Preshared Key (automatic) IKE is an Internet Key Exchange protocol that used to negotiate key material for SA (Security Association). IKE uses the Pre-shared Key field to authenticate the remote IKE peer. Phase 1 DH Group: Phase 1 is used to create a security association (SA). DH (Diffie-Hellman) is a key exchange protocol that is used during phase 1 of the authentication process to establish pre-shared keys.
  • Page 77 VR-100 8-Port Dual-WAN VPN Router SHA is a one-way hashing algorithm that produces a 160-bit digest. SHA is recommended because it is more secure. Phase 1 SA Life Time: This field allows you to configure the length of time a VPN tunnel is active in Phase 1.
  • Page 78 VR-100 8-Port Dual-WAN VPN Router active in Phase 2. The default value is 3,600 seconds. Preshared Key: The character and hexadecimal values are acceptable in this field, e.g. "My_@123" or "4d795f40313233." The maximum entry of this field is 30-digit. Both sides must use the same Pre-shared Key.
  • Page 79 VR-100 8-Port Dual-WAN VPN Router compression. When 8-Port Dual-WAN VPN Router works as a responder, 8-Port Dual-WAN VPN Router will always accept compression even without enabling compression. Keep-Alive: This mechanism helps to keep up the connection of IPSec tunnels. Whenever a connection is dropped and detected, it will be re-established immediately.
  • Page 80: Client To Gateway

    VR-100 8-Port Dual-WAN VPN Router Client to Gateway By setting this page, you can create a new tunnel between Local VPN device and mobile user. You can select Tunnel to create tunnel for single mobile user, or select Group VPN to create tunnels for multiple VPN clients.
  • Page 81 VR-100 8-Port Dual-WAN VPN Router are supported by 8-Port Dual-WAN VPN Router. Group ID Name: Enter the Group ID Name. Such as, American Sales Group. Interface: Select the Interface from the drop-down menu. When dual WAN is enable, there are two options. (WAN1/WAN2).
  • Page 82 VR-100 8-Port Dual-WAN VPN Router IP + E-mail Addr. (USER FQDN) Authentication: If you select this type, enter the E-mail address, and IP address will come out automatically. Dynamic IP + Domain Name (FQDN) Authentication: If the Local Security Gateway is a dynamic IP, you can select this type.
  • Page 83 VR-100 8-Port Dual-WAN VPN Router Group Type may be a single IP address, a Subnet or an IP range. The Local Secure Group must match Remote VPN Client’s Remote Secure Group. IP Address: If you select IP Address, only the computer with the specific IP Address that you enter will be able to access the tunnel.
  • Page 84 VR-100 8-Port Dual-WAN VPN Router Router will get the IP address of remote client by DNS Resolved, and IP address of remote client will be displayed on VPN Status of Summary page. IP + Domain Name (FQDN) Authentication: If you know the static IP address of remote client, select IP address from drop-down menu.
  • Page 85 VR-100 8-Port Dual-WAN VPN Router get the IP address of the remote client by DNS Resolved, and IP address of the remote client will be displayed on VPN Status of Summary page. Then, enter E-mail Address as an ID. Dynamic IP + Domain Name (FQDN) Authentication: If you select this type, the Remote Security Gateway will be a dynamic IP, so you don’t need to enter the IP address.
  • Page 86 VR-100 8-Port Dual-WAN VPN Router In Group VPN condition: Remote Client: There are three types of Remote Client, Domain Name (FQDN), E-mail Address (USER FQDN) and Microsoft XP/2000 VPN Client. Domain Name (FQDN) (Fully Qualified Domain Name): If you select FQDN, enter the FQDN of the Remote Client.
  • Page 87 VR-100 8-Port Dual-WAN VPN Router Manual If you select Manual, it allows you to generate the key yourself, and no key negotiation is needed. Basically, manual key management is used in small static environments or for troubleshooting purposes. Both sides must use the same Key Management method.
  • Page 88 VR-100 8-Port Dual-WAN VPN Router sides must use the same Encryption Key. If DES is selected, the Encryption Key is 16-bit. If users do not fill up to 16-bit, this filed will be filled up to 16-bit automatically by 0. If 3DES is selected, the Encryption Key is 48-bit.
  • Page 89 VR-100 8-Port Dual-WAN VPN Router Group 1. If network security is preferred, select Group 5. Phase 1 Encryption: There are three methods of encryption, DES, 3DES and AES. The Encryption method determines the length of the key used to encrypt/decrypt ESP packets.
  • Page 90 VR-100 8-Port Dual-WAN VPN Router method. 3DES or AES is recommended because it is more secure.If users enable the AH Hash Algorithm in Advanced, it’s recommended to select Null to disable encrypt/decrypt ESP packets in Phase 2 for most users, but both sides must use the same setting.
  • Page 91 VR-100 8-Port Dual-WAN VPN Router Aggressive Mode: There are two types of Phase 1 exchanges: Main mode and Aggressive mode. Aggressive Mode requires half of the main mode messages to be exchanged in Phase 1 of the SA exchange. If network security is preferred, select Main mode. If network speed is preferred, select Aggressive mode.
  • Page 92 VR-100 8-Port Dual-WAN VPN Router Dead Peer Detection (DPD): When DPD is enabled, the 8-Port Dual-WAN VPN Router will send the periodic HELLO/ACK messages to prove the tunnel liveliness when both peers of VPN tunnel provide DPD mechanism. Once a dead peer is detected, the 8-Port Dual-WAN VPN Router will disconnect the tunnel so the connection can be re-established.
  • Page 93: Vpn Pass Through

    VR-100 8-Port Dual-WAN VPN Router VPN Pass Through IPSec Pass Through Internet Protocol Security (IPSec) is a suite of protocols used to implement secure exchange of packets at the IP layer. To allow IPSec tunnels to pass through the Router, IPSec Pass Through is enabled by default.
  • Page 94 VR-100 8-Port Dual-WAN VPN Router button to undo the changes. • 91 •...
  • Page 95: Log

    VR-100 8-Port Dual-WAN VPN Router System Log There are three parts in System Log- Syslog, E-mail and Log Setting. Syslog Enable Syslog: If check the box, Syslog will be enabled. Syslog Server: In addition to the standard event log, the 8-Port Dual-WAN VPN Router can send a detailed log to an external Syslog server.
  • Page 96: Log Setting

    VR-100 8-Port Dual-WAN VPN Router Mail Server: If you wish to have any log or alert information E-mailed to you, then you must enter the name or numerical IP address of your SMTP server. Your Internet Service Provider can provide you with this information.
  • Page 97 VR-100 8-Port Dual-WAN VPN Router There are four buttons following Log Setting section. View System Log: Once you press this button, the new window will pop up the Log, and user can choose ALL, System Log, Access Log, Firewall Log and VPN Log.
  • Page 98: System Statistics

    VR-100 8-Port Dual-WAN VPN Router System Statistics 8-Port Dual-WAN VPN Router is able to perform the system statistics includes the Device Name, Status, IP Address, MAC Address, Subnet Mask, Default Gateway, Received Packets, Sent Packets, Total Packets, Received Bytes, Sent Bytes, Total Bytes, Error Packets Received and Dropped Packets Received for LAN, WAN1 and WAN2.
  • Page 99: Logout

    VR-100 8-Port Dual-WAN VPN Router Logout The Logout button is located on the lower right corner of the Web Interface. This button will terminate the management session and the Authentication window will be displayed. You will need to re-enter your User Name and Password to login and continue to manage the 8-Port Dual-WAN VPN Router.

Table of Contents