User's Manual
Virtual Private Networking
121
N600 Wireless Dual Band Gigabit ADSL2+ Modem Router DGND3700
Local LAN IP Address
The remote VPN
endp
oint has to have
these IP addresses
entered as its remote
addresses.
Subnet Mask Enter the network mask.
Single PC - no
Subne
t
Select th
is option if there is no LAN (only a single PC) at the
remote endpoint. If this option is selected, no additional data is
required.
Single/Start IP
Address
• The IP address for a single address, or the starting address for
an address
range used on the LAN. If you want to make a single
server on your LAN available to remote users, use a single
address settings.
• Any.
The remote VPN endpoint can be at any IP address.
Finish IP
Address
For an
address range, enter the finish IP address. This has to be
an address range used on your LAN.
Subnet Mask Enter the network mask.
Remote LAN IP Address
The remote VPN
end
p
oint has to have
these IP addresses
entered as its local
addresses.
IP Address Single PC -
no
Subnet. Select this option if there is no LAN (only
a single PC) at the remote endpoint. If this option is selected, no
additional data is required. The typical application is a PC running
the VPN client at the remote end.
Single/Start IP
Address
• Enter an IP address on the remote LAN. You can use this setting
to access
a serv
er.
• For a range of addresses, enter the starting IP ad
dress. This has
to be an address range used on the remote LAN.
• Any. Any outgoing traffic from specified Lo
cal IP computers
triggers an attempted VPN connection to the remote VPN
endpoint. Be sure you want this option before selecting it.
Finish IP
Address
Enter the finish IP address for a range of addresses. This must be
an address
range used on the remote LAN.
Subnet Mask Enter the network mask.
ESP Configuration
ESP (encapsulating
s
e
curity payload)
provides security for the
payload (data) sent
through the VPN tunnel.
SPI Enter the required security policy indexes (SPIs)
.
Each policy has
to have unique SPIs. These settings have to match the remote
VPN endpoint. The in setting here has to match the out setting on
the remote VPN endpoint, and the out setting here has to match
the in setting on the remote VPN endpoint.
Encryption Select an encryption algorithm, and
enter the key in the field
provided. For 3DES, the keys should be 24 ASCII characters, and
for DES, the keys should be 8 ASCII characters.
• DES.
The Data Encryption Standard (DES) processes input data
th
at is 64 bits wide, encrypting these values using a 56-bit key.
Faster but less secure than 3DES.
• 3DES. (Triple DES) achieves a higher level of security by
encrypting
the data three times using DES with three different,
unrelated keys.
Authentication Select an authentication method.
Table 21. VPN Manual Policy fields and settings (continued)
Fields and Settings Description