3 vpn server, The speedtouch™ as vpn server, Configuration procedure – RCA 608WL User Manual

Page 199: Buttons, Local trusted network, Vpn server, Chapter 5

Advertising
background image

Chapter 5

Expert Configuration

E-DOC-CTC-20041126-0013 v1.0

197

5.7.3 VPN Server

The SpeedTouch™ as

VPN Server

In a VPN client-server scenario, the VPN server is always the responder in the IKE
negotiations. Various VPN clients can dial in to a VPN server, since it supports
multiple simultaneous VPN connections. A VPN server does not know a priori which
remote Security Gateway will attempt to set up a VPN connection. In time, new
users may join the VPN. It is an advantage that the SpeedTouch™ VPN server
requires no modifications to its configuration when new clients are added to the
VPN. The SpeedTouch™ can establish a secure connection with any Remote
Gateway that meets the VPN settings, regardless its location in the public network.
The use of the Extended Authentication protocol can optionally be configured. In this
case, a list of authorized users is composed and stored in the SpeedTouch™.

Configuration

procedure

Perform the following steps to configure your VPN server:

1

Select VPN > VPN Server.

2

Fill out the various parameter fields in the VPN Server web page.

3

Select the IKE Authentication method. Either Preshared Key or Certificate
Authentication

can be selected.

4

Click Apply to confirm the data and Save All to make the configuration
permanent.

Optional: If you use the Extended Authentication protocol, you have to compose an
authorized users list.

Buttons

Local Trusted Network

The Local Trusted Network open to Remote Clients describes which part of the
local network you want to make accessible for remote VPN clients. The Trusted
Network IP values are used during the Phase 1 negotiations, and must comply with
the values configured in the remote VPN client.

Click...

To...

Specify Additional Networks

reveal additional fields where you can
specify additional descriptors for the
local network open to remote terminals
via a VPN connection.

Use Preshared Key Authentication

reveal additional parameter fields
required for the configuration of
Preshared Key Authentication.

Use Certificate Authentication

reveal additional parameter fields
required for the configuration of Certifi-
cate Authentication.

Specify Additional Descriptors

reveal additional fields where you can
specify alternative Security Descriptors.

Apply

confirm the VPN server settings.

Clear All

clear all VPN server settings.

Advertising
This manual is related to the following products:

620