Draytek Vigor2800 Series User Manual page 83

Adsl2/2+ security router
Hide thumbs Also See for Vigor2800 Series:
Table of Contents

Advertisement

IPSec Tunnel
L2TP
Specify CLID or Remote
VPN Gateway
User Name
Password
VJ Compression
IKE Authentication
Method
IPSec Security Method
Callback Function
Vigor2800 Series User's Guide
Allow the remote dial-in user to trigger a IPSec VPN
connection through Internet.
Allow the remote dial-in user to make a L2TP VPN connection
through the Internet. You can select to use L2TP alone or with
IPSec. Select from below:
None- Do not apply the IPSec policy. Accordingly, the VPN
connection employed the L2TP without IPSec policy can be
viewed as one pure L2TP connection.
Nice to Have- Apply the IPSec policy first, if it is applicable
during negotiation. Otherwise, the dial-in VPN connection
becomes one pure L2TP connection.
Must- Specify the IPSec policy to be definitely applied on the
L2TP connection.
You can specify the IP address of the remote dial-in user or
peer ID (should be the same with the ID setting in dial-in
type) by checking the box. Enter Peer ISDN number if you
select ISDN above (This feature is useful for i model only.).
Also, you should further specify the corresponding security
methods on the right side.
If you uncheck the checkbox, the connection type you select
above will apply the authentication methods and security
methods in the general settings.
This field is applicable when you select PPTP or L2TP w/ or
w/out IPSec policy above.
This field is applicable when you select PPTP or L2TP w/ or
w/out IPSec policy above.
VJ Compression is used for TCP/IP protocol header
compression. This field is applicable when you select PPTP or
L2TP w/ or w/out IPSec policy above.
This group of fields is applicable for IPSec Tunnels and L2TP
with IPSec Policy when you Specify ISDN CLID (for i model
only) or Remote VPN Gateway Peer ISDN Number (for i
model only) or Peer VPN Server IP. The only exception is
Digital Signature (X.509) can be set when you select IPSec
tunnel either w/ or w/o specify the CLID or IP address of the
remote node.
Pre-Shared Key - Input 1-63 characters as pre-shared key.
Digital Signature (X.509) - Select one predefined in the
X.509 Peer ID Profiles.
This group of fields is a must for IPSec Tunnels and L2TP with
IPSec Policy when you specify the remote node.
Medium- Authentication Header (AH) means data will be
authenticated, but not be encrypted. By default, this option is
active.
High- Encapsulating Security Payload (ESP) means payload
(data) will be encrypted and authenticated. You may select
encryption algorithm from Data Encryption Standard (DES),
Triple DES (3DES), and AES.
The callback function provides a callback service only for the
ISDN dial-in user (this feature is useful for i model only). The
77

Advertisement

Table of Contents
loading

This manual is also suitable for:

Vigor2800vVigor2800vgVigor2800g

Table of Contents