7 vpn and remote access, 1 remote access control – Draytek 2130 User Manual

Page 161

Advertising
background image

Vigor2130 Series User’s Guide

153

Enabling firewall applications on your PC may cause the UPnP function not working
properly. This is because these applications will block the accessing ability of some network
ports.

Security Considerations
Activating the UPnP function on your network may incur some security threats. You should
consider carefully these risks before activating the UPnP function.
¾

Some Microsoft operating systems have found out the UPnP weaknesses and hence
you need to ensure that you have applied the latest service packs and patches.

¾

Non-privileged users can control some router functions, including removing and
adding port mappings.

The UPnP function dynamically adds port mappings on behalf of some UPnP-aware
applications. When the applications terminate abnormally, these mappings may not be
removed.

4

4

.

.

7

7

V

V

P

P

N

N

a

a

n

n

d

d

R

R

e

e

m

m

o

o

t

t

e

e

A

A

c

c

c

c

e

e

s

s

s

s

A Virtual Private Network (VPN) is the extension of a private network that encompasses links
across shared or public networks like the Internet. In short, by VPN technology, you can send
data between two computers across a shared or public network in a manner that emulates the
properties of a point-to-point private link.

Below shows the menu items for VPN and Remote Access.

4

4

.

.

7

7

.

.

1

1

R

R

e

e

m

m

o

o

t

t

e

e

A

A

c

c

c

c

e

e

s

s

s

s

C

C

o

o

n

n

t

t

r

r

o

o

l

l

Enable the necessary VPN service as you need. If you intend to run a VPN server inside your
LAN, you should enable IPSec VPN Pass-through and specify an IP address to allow VPN
tunnel pass through.

Enable IPSec VPN Service

If this checkbox is checked, the system firewall will allow
VPN (IPSec) remote access from WAN side to the router.

Enable IPSec VPN Pass-through If this checkbox is checked, the system f firewall will

allow VPN (IPSec) remote access from WAN side to a
VPN device on the LAN. Type the IP address of the VPN
device in the field next to the checkbox.

Advertising