User's Manual

Table Of Contents
Chapter 5: Security
10. If two WAN ports are configured to connect to an ISP, use the Select Local Gateway to
select the Gateway used as the local Endpoint for this IPsec tunnel.
11. Select one option to identify the Remote Endpoint (IP) Gateway:
l IP Address Enter the IP Address of the Gateway in the IP Address/FQDN
field.
l FQDN (Fully Qualified Domain Name) Enter the IP Address of the FQDN in the
IP Address/FQDN field.
12. Set the Enable Mode Config field to On to enable the Mode Configuration feature.
Mode configuration is similar to DHCP and is used to assign IP addresses to remote VPN
clients.
13. Set the Enable NetBIOS option to Off to disable NetBIOS broadcasts over the VPN
tunnel.
When enabled, NetBIOS broadcasts are allowed to travel over the VPN tunnel.
Note: This field is visible when the IPsec Mode is set to Tunnel Mode.
14. Set the Enable Rollover to On to allow rollover of the VPN when WAN Mode is set to
Auto Rollover on the Network > WAN Mode page.
15. In the Protocol field, select either:
l AH Guarantees connectionless integrity and data origin authentication of IP
packets.
l ESP Enables data origin authenticity, integrity, and confidentiality protection of
packets.
16. Set the Enable DHCP field to either:
l On to allow VPN client connection to the device over IPsec and receive an assigned
IP using DHCP.
l Off to manually define the local and remote traffic selections for tunnel mode IPsec
policies.
Note: This field is visible when the IPsec Mode is set to Tunnel Mod.
17. Select one Local IP identifier to provide for a Client.
This field is visible when the IPsec Mode is set to Tunnel Mode and Enable DHCP is set
to Off.
l Any Specifies the policy is for traffic from the given Endpoint (local or remote).
Important: Selecting Any for both local and remote Endpoints is not
valid.
Page 112 of 171 LUM0063AA Rev 05/05/2014
This document is the property of FreeWave Technologies, Inc. and contains proprietary information owned by
FreeWave®. This document cannot be reproduced in whole or in part by any means without written permission from
FreeWave Technologies, Inc.