Draytek Vigor2860 Series User Manual page 286

Vdsl2 security firewall
Hide thumbs Also See for Vigor2860 Series:
Table of Contents

Advertisement

Subnet
IKE Authentication
Method
Vigor2860 Series User's Guide
connection.
Nice to Have - Apply the IPsec policy first, if it is
applicable during negotiation. Otherwise, the dial-in
VPN connection becomes one pure L2TP
connection.
Must -Specify the IPsec policy to be definitely
applied on the L2TP connection.
SSL Tunnel – Allow the remote dial-in user to make an
SSL VPN connection through Internet.
Specify Remote Node -You can specify the IP address of
the remote dial-in user, ISDN number or peer ID (used in
IKE aggressive mode).
Uncheck the checkbox means the connection type you
select above will apply the authentication methods and
security methods in the general settings.
Netbios Naming Packet -
Pass – Click it to have an inquiry for data
transmission between the hosts located on both sides
of VPN Tunnel while connecting.
Block – When there is conflict occurred between the
hosts on both sides of VPN Tunnel in connecting,
such function can block data transmission of Netbios
Naming Packet inside the tunnel.
Multicast via VPN - Some programs might send multicast
packets via VPN connection.
Pass – Click this button to let multicast packets pass
through the router.
Block – This is default setting. Click this button to let
multicast packets be blocked by the router.
User Name - This field is applicable when you select PPTP
or L2TP with or without IPsec policy above. The length of
the name is limited to 23 characters.
Password - This field is applicable when you select PPTP
or L2TP with or without IPsec policy above. The length of
the password is limited to 19 characters.
Enable Mobile One-Time Passwords (mOTP) - Check
this box to make the authentication with mOTP function.
PIN Code – Type the code for authentication (e.g, 1234).
Secret – Use the 32 digit-secret number generated by
mOTP in the mobile phone (e.g., e759bb6f0e94c7ab4fe6).
Chose one of the subnet selections for such VPN profile.
Assign Static IP Address – Please type a static IP address
for the subnet you specified.
This group of fields is applicable for IPsec Tunnels and
L2TP with IPsec Policy when you specify the IP address of
the remote node. The only exception is Digital Signature
(X.509) can be set when you select IPsec tunnel either with
or without specify the IP address of the remote node.
276

Advertisement

Table of Contents
loading

Table of Contents