Draytek Vigor3220 Series User Manual page 231

Multi-wan security router
Hide thumbs Also See for Vigor3220 Series:
Table of Contents

Advertisement

Always On
Server IP/Host Name
for VPN
Server Port (for SSL
Tunnel)
IKE Authentication
Method
Digital Signature
(X.509)
IPsec Security Method
User Name
Password
Remote Network IP
Remote Network
Mask
Vigor3220 Series User's Guide
for this profile. This setting is useful for dial-out only.
WAN1 First/ WAN2 First /WAN3 First/WAN4 First/WAN5
First- While connecting, the router will use
WAN1/WAN2/WAN3/WAN4/WAN5 as the first channel for
VPN connection. If WAN1/WAN2/WAN3/WAN4/WAN5 fails,
the router will use another WAN interface instead.
WAN1 Only /WAN2 Only/WAN3 Only/WAN4 Only/WAN5
Only - While connecting, the router will use
WAN1/WAN2/WAN3/WAN4/WAN5 as the only channel for
VPN connection.
WAN1 Only: Only establish VPN if WAN2 down - If WAN2
failed, the router will use WAN1 for VPN connection.
WAN2 Only: Only establish VPN if WAN1 down - If WAN1
failed, the router will use WAN2 for VPN connection.
Check to enable router always keep VPN connection.
Type the IP address of the server or type the host name for
such VPN profile.
Type a port number for SSL tunnel.
IKE Authentication Method usually applies to those are
remote dial-in user or node (LAN to LAN) which uses dynamic
IP address and IPsec-related VPN connections such as L2TP
over IPsec and IPsec tunnel.
Pre-Shared Key- Specify a key for IKE authentication.
Confirm Pre-Shared Key-Confirm the pre-shared key.
Click Digital Signature to invoke this function.
Peer ID – Choose the peer ID selection from the drop down
list.
Local ID – Choose Alternative Subject Name First or Subject
Name First.
Local Certificate – Use the drop down list to choose one of
the certificates for using. You have to configure one
certificate at least previously in Certificate Management >>
Local Certificate. Otherwise, the setting you choose here
will not be effective.
Medium - Authentication Header (AH) means data will be
authenticated, but not be encrypted. By default, this option
is active.
High - Encapsulating Security Payload (ESP) means payload
(data) will be encrypted and authenticated. You may select
encryption algorithm from Data Encryption Standard (DES),
Triple DES (3DES), and AES.
This field is used to authenticate for connection when you
select PPTP or L2TP with or without IPsec policy above.
The length of the user name is limited to 11 characters.
This field is used to authenticate for connection when you
select PPTP or L2TP with or without IPsec policy above.
The length of the password is limited to 11 characters.
Please type one LAN IP address (according to the real
location of the remote host) for building VPN connection.
Please type the network mask (according to the real location
of the remote host) for building VPN connection.
219

Advertisement

Table of Contents
loading

Table of Contents