D-Link DFL-1000 [96/168] Manual key vpn for remote clients

D-Link DFL-1000 [96/168] Manual key vpn for remote clients
DFL-1000 User Manual
9
6
Manual key VPN for remote clients
In this example, you configure a manual key VPN between an internal network and a remote VPN client.
Example VPN between a main office internal network and a remote client
shows this configuration.
Use the following procedures to configure the manual key VPN:
Configuring the manual key tunnel
Adding internal and external addresses
Adding an encrypt policy
Configuring the IPSec VPN client
Configuring the manual key tunnel
Example DFL-1000 VPN gateway and client manual key tunnels shows the information required to
configure the manual key tunnel for the example VPN in Example VPN between a main office internal
network and a remote client.
Example DFL-1000 VPN gateway and client manual key tunnels
Field name
DFL-1000 VPN gateway
information
Client information
VPN Tunnel Name
Client_VPN Gateway_VPN
Local SPI
100000 200000
Remote SPI
200000 100000
Remote Gateway
2.2.2.2 1.1.1.1
Replay Detection
Select Select
Encryption
Algorithm
ESP-3DES-HMAC-SHA1 ESP-3DES-HMAC-SHA1
Encryption Key
1234567890abcdef
1234567890abcdef
1234567890abcdef
1234567890abcdef 1234567890abcdef
1234567890abcdef
Authentication Key
1234567890abcdef
1234567890abcdef
12345678
1234567890abcdef 1234567890abcdef
12345678
Concentrator
None None
The Local and Remote SPI values for the DFL-1000 VPN gateway and the client should complement each
other. You can use any HEX characters for the Local and Remote SPI. The Local SPI on the DFL-1000 VPN
gateway should match the Remote SPI on the client. The Remote SPI on the DFL-1000 VPN gateway should
match the Local SPI on the client. Both the Local SPI and the Remote SPI value must be greater than BB8.
You can use any HEX characters for the encryption and authentication keys. However, they must be the same
on the DFL-1000 VPN gateway and on the client.
For more information about manual key tunnel settings, see Adding a manual key VPN tunnel.
To configure the manual key tunnel on the DFL-1000 VPN gateway:
Go to VPN > IPSEC > Manual Key .
Select New to add a manual key tunnel.
Configure the manual key tunnel using the DFL-1000 VPN gateway information in Example DFL-1000
VPN gateway and client manual key tunnels.

Содержание

Скачать