Draytek Vigor2955 User Manual page 113

Dual wan ssl vpn appliance
Hide thumbs Also See for Vigor2955:
Table of Contents

Advertisement

Digital Signature (X.509) Check the box of Digital Signature to invoke this
IPSec Security Method
User Name
Password
Remote Network IP
Remote Network Mask
After finishing the configuration, please click Next. The confirmation page will be shown as
follows. If there is no problem, you can click one of the radio buttons listed on the page and
click Finish to execute the next action.
such as L2TP over IPSec and IPSec tunnel.
Pre-Shared Key- Specify a key for IKE authentication
Confirm Pre-Shared Key-Confirm the pre-shared key.
function.
Peer ID – Select one predefined in the X.509 Peer ID
Profiles (set from VPN and Remote Access>>IPSec
Peer Identity). If you choose None, it means that you
will accept any peer regardless of its identity.
Local ID – Click Alternative Subject Name First to
make a specific field of digital signature to accept the
peer with matching value. The field can be IP Address,
Domain, or E-mail Address. Or click Subject Name
First to make a specific field of digital signature to
accept the peer with matching value. The field includes
Country (C), State (ST), Location (L), Organization (O),
Organization Unit (OU), Common Name (CN), and
Email (E). You have to configure one certificate at least
previously in Certificate Management >> Local
Certificate. Otherwise, the setting you choose here will
not be effective.
Local Certificate - When the router (served as the client)
executes LAN to LAN dial out with IPSec mode, it will
transfer the certificate to the server based on the setting
selected here. Please use the drop down list to choose one
of the certificates configured in Certificate
Management>>Local Certificate.
Medium - Authentication Header (AH) means data will
be authenticated, but not be encrypted. By default, this
option is active.
High - Encapsulating Security Payload (ESP) means
payload (data) will be encrypted and authenticated. You
may select encryption algorithm from Data Encryption
Standard (DES), Triple DES (3DES), and AES.
This field is used to authenticate for connection when you
select PPTP or L2TP with or without IPSec policy above.
This field is used to authenticate for connection when you
select PPTP or L2TP with or without IPSec policy above.
Please type one LAN IP address (according to the real
location of the remote host) for building VPN connection.
Please type the network mask (according to the real
location of the remote host) for building VPN connection.
103
Vigor2955 User's Guide

Advertisement

Table of Contents
loading

This manual is also suitable for:

Vigor2950 series

Table of Contents