Draytek Vigor3910 Series User Manual page 180

Multi-wan security router
Hide thumbs Also See for Vigor3910 Series:
Table of Contents

Advertisement

Subnet
IKE Authentication
Method
IPsec Security Method
170
Must – IPsec is required when establish L2TP
connections.
Specify Remote Node - The IP address of the remote VPN
client (Remote Client IP) or the Peer ID (used in IKE
aggressive mode) can be optionally specified. The router will
reject the connection if either of these values are entered in
the profile but the remote client does not pass the value, or
passes the wrong value.
Netbios Naming Packet - Specifies whether to allow NetBIOS
naming packets to traverse through the VPN tunnel.
Pass – Click it to have an inquiry for data transmission
between the hosts located on both sides of VPN Tunnel
while connecting.
Block – When there is conflict occurred between the
hosts on both sides of VPN Tunnel in connecting, such
function can block data transmission of Netbios Naming
Packet inside the tunnel.
Multicast via VPN - Specifies whether to allow multicast
packets to traverse through the VPN tunnel.
Pass – Click this button to let multicast packets pass
through the router.
Block – This is default setting. Click this button to let
multicast packets be blocked by the router.
The VPN client will receive an IP address from the DHCP pool
or IP address range specified in IP Address Assignment for
Dial-In Users for the selected LAN subnet.
Assign Static IP Address – Alternatively, a static IP address
can be set by selecting the Assign Static IP Address checkbox.
User Name - Used for PPTP, L2TP or SSL Tunnel dial-in type.
The length of the name is limited to 23 characters.
Password - Used for PPTP, L2TP or SSL Tunnel dial-in type.
The length of the password is limited to 19 characters.
Enable Mobile One-Time Passwords (mOTP) - Select to
enable one-time passwords (Mobile-OTP). Enter the PIN Code
and Secret. DrayTek's SmartVPN client has built-in support
for mOTP. Third-party mOTP clients can be used to generate
passwords when using other VPN clients. For more
information on mOTP, visit Mobile-OTP's homepage.
PIN Code – Enter the code for authentication (e.g,
1234).
Secret – Use the 32 digit-secret number generated by
mOTP in the mobile phone (e.g.,
e759bb6f0e94c7ab4fe6).
Pre-Shared Key - This checkbox is available when Remote
Client IP or Peer ID is specified. Check the checkbox and
click IKE Pre-shared Key to enter an IKE PSK (1~63
characters) that will be used only for this profile.
Digital Signature (X.509) – To enable authentication using
X.509 Peer IDs, check the checkbox then select an X.509
profile. X.509 profiles can be configured in VPN and Remote
Access >> IPsec Peer Identity.
Select all the IPsec protocols that are allowed to be used for
this profile.
Medium-Authentication Header (AH) means data will be
authenticated, but not be encrypted. By default, this option
Vigor3910 Series User's Guide

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents