DG834Gv4 Reference Manual
Page 9
...Wireless Client Association 5-16 Chapter 6 Virtual Private Networking Overview of VPN Configuration 6-1 Client-to-Gateway VPN Tunnels 6-2 Gateway-to-Gateway VPN Tunnels 6-2 Planning a VPN ...6-3 VPN Tunnel Configuration 6-5 Setting Up a Client-to-Gateway VPN Configuration 6-5 Step 1: Configuring the Client-to-Gateway VPN Tunnel on the DG834G v4 ...........6-6 Step 2: Configuring the NETGEAR... a VPN Tunnel 6-31 Setting Up VPN Tunnels in Special Circumstances 6-32 Using Auto Policy to Configure VPN Tunnels 6-32 Using Manual Policy to Configure VPN Tunnels 6-41 3 v2.0, September 2007
...Wireless Client Association 5-16 Chapter 6 Virtual Private Networking Overview of VPN Configuration 6-1 Client-to-Gateway VPN Tunnels 6-2 Gateway-to-Gateway VPN Tunnels 6-2 Planning a VPN ...6-3 VPN Tunnel Configuration 6-5 Setting Up a Client-to-Gateway VPN Configuration 6-5 Step 1: Configuring the Client-to-Gateway VPN Tunnel on the DG834G v4 ...........6-6 Step 2: Configuring the NETGEAR... a VPN Tunnel 6-31 Setting Up VPN Tunnels in Special Circumstances 6-32 Using Auto Policy to Configure VPN Tunnels 6-32 Using Manual Policy to Configure VPN Tunnels 6-41 3 v2.0, September 2007
DG834Gv4 Reference Manual
Page 14
... This Chapter link at http://kbserver.netgear.com/products/DG834G v4.asp. Each page in the HTML view. How to Print this Manual To print this manual includes the following options, according to a major topic. This manual is written for the product model...NETGEAR, Inc. website at the top left of contents and an button. online knowledge base for the ADSL2+ Modem Wireless Router according to these specifications: Product Version Manual Publication Date 54 Mbps ADSL2+ Modem Wireless Router Model DG834G September 2007 For more information about network, Internet, firewall,...
... This Chapter link at http://kbserver.netgear.com/products/DG834G v4.asp. Each page in the HTML view. How to Print this Manual To print this manual includes the following options, according to a major topic. This manual is written for the product model...NETGEAR, Inc. website at the top left of contents and an button. online knowledge base for the ADSL2+ Modem Wireless Router according to these specifications: Product Version Manual Publication Date 54 Mbps ADSL2+ Modem Wireless Router Model DG834G September 2007 For more information about network, Internet, firewall,...
DG834Gv4 Reference Manual
Page 25
...Wireless Router DG834G Reference Manual Table 1-2. Classical routing lets you will capture and use the MAC address of the network interface card in a setting where you directly manage the IP addresses that you want to use. *. Some ISPs register the Ethernet MAC address of the computer that you are sure that the DG834G v4... • Disable. Classical routing should be used by experienced users* • Disable Firewall. This disables the firewall in addition to install the modem router in your computer when your network are disabled. Enter the MAC address that computer. ...
...Wireless Router DG834G Reference Manual Table 1-2. Classical routing lets you will capture and use the MAC address of the network interface card in a setting where you directly manage the IP addresses that you want to use. *. Some ISPs register the Ethernet MAC address of the computer that you are sure that the DG834G v4... • Disable. Classical routing should be used by experienced users* • Disable Firewall. This disables the firewall in addition to install the modem router in your computer when your network are disabled. Enter the MAC address that computer. ...
DG834Gv4 Reference Manual
Page 58
... Manual Table 4-1. Broadcast Name Description The service set in Chapter 2. If not enabled, the Wireless LED on the Router Status screen to broadcast its SSID. Modem Router Status Fields (continued) Field Wireless Port Name (SSID) These are set ID, also known as the wireless network name. Indicates if the DG834G v4 is configured to display modem router usage statistics...
... Manual Table 4-1. Broadcast Name Description The service set in Chapter 2. If not enabled, the Wireless LED on the Router Status screen to broadcast its SSID. Modem Router Status Fields (continued) Field Wireless Port Name (SSID) These are set ID, also known as the wireless network name. Indicates if the DG834G v4 is configured to display modem router usage statistics...
DG834Gv4 Reference Manual
Page 82
...Remote MAC Address field, and AP 2 must have AP 2's MAC address in its Remote MAC Address field. 3. The DG834G v4 modem router must have the DG834G v4's MAC address in Figure 5-8): 1. You must use the same SSID, channel, authentication mode, if any, and security settings... Bridge mode. A computer on LAN Segment 2 in the field provided. ADSL2+ Modem Wireless Router DG834G Reference Manual Point-to-Point Bridge Configuration In Point-to protect this communication. As a bridge, wireless client associations are in use. 4. Configure the other PCs or servers connected to -Point...
...Remote MAC Address field, and AP 2 must have AP 2's MAC address in its Remote MAC Address field. 3. The DG834G v4 modem router must have the DG834G v4's MAC address in Figure 5-8): 1. You must use the same SSID, channel, authentication mode, if any, and security settings... Bridge mode. A computer on LAN Segment 2 in the field provided. ADSL2+ Modem Wireless Router DG834G Reference Manual Point-to-Point Bridge Configuration In Point-to protect this communication. As a bridge, wireless client associations are in use. 4. Configure the other PCs or servers connected to -Point...
DG834Gv4 Reference Manual
Page 83
... of the other bridge-mode access points to Point-to-Point Bridge mode, using the MAC address of this DG834G v4 as the Remote MAC Address. • Using wireless security to -Point Bridge Mode AP 3 PCs LAN Segment 1 AP 2 Hub or switch Hub or switch...-to multiple peer access points simultaneously. As a bridge, wireless client associations are disabled-only wired clients can be connected. The figure below shows an example of a Multi-Point Bridge mode configuration. ADSL2+ Modem Wireless Router DG834G Reference Manual Multi-Point Bridge Configuration Multi-Point Bridge mode allows a...
... of the other bridge-mode access points to Point-to-Point Bridge mode, using the MAC address of this DG834G v4 as the Remote MAC Address. • Using wireless security to -Point Bridge Mode AP 3 PCs LAN Segment 1 AP 2 Hub or switch Hub or switch...-to multiple peer access points simultaneously. As a bridge, wireless client associations are disabled-only wired clients can be connected. The figure below shows an example of a Multi-Point Bridge mode configuration. ADSL2+ Modem Wireless Router DG834G Reference Manual Multi-Point Bridge Configuration Multi-Point Bridge mode allows a...
DG834Gv4 Reference Manual
Page 84
...-point APs must have the option of disabling client associations with the remote MAC address of AP 1 (the DG834G v4 modem router in the above diagram) in the Remote AP MAC address field. 4. ADSL2+ Modem Wireless Router DG834G Reference Manual • Configure the access point (AP3) on LAN Segment 3 in Point-to-Point Bridge mode with this...
...-point APs must have the option of disabling client associations with the remote MAC address of AP 1 (the DG834G v4 modem router in the above diagram) in the Remote AP MAC address field. 4. ADSL2+ Modem Wireless Router DG834G Reference Manual • Configure the access point (AP3) on LAN Segment 3 in Point-to-Point Bridge mode with this...
DG834Gv4 Reference Manual
Page 85
Verify the following figure shows an example of parent/child APs. Advanced Configuration v2.0, September 2007 5-17 ADSL2+ Modem Wireless Router DG834G Reference Manual • You cannot configure a sequence of a Repeater Mode configuration. You are using DHCP, AP devices should be on LAN ...in the same network. • If you are limited to only one parent AP, although if the DG834G v4 is configured to four child APs. Wireless PC associated with AP 1 DG834G v4 Modem Router Wireless PC associated with AP2 Internet 192.168.0.1 AP 2 in Repeater mode PCs AP 1 (parent AP in ...
Verify the following figure shows an example of parent/child APs. Advanced Configuration v2.0, September 2007 5-17 ADSL2+ Modem Wireless Router DG834G Reference Manual • You cannot configure a sequence of a Repeater Mode configuration. You are using DHCP, AP devices should be on LAN ...in the same network. • If you are limited to only one parent AP, although if the DG834G v4 is configured to four child APs. Wireless PC associated with AP 1 DG834G v4 Modem Router Wireless PC associated with AP2 Internet 192.168.0.1 AP 2 in Repeater mode PCs AP 1 (parent AP in ...
DG834Gv4 Reference Manual
Page 87
...on page 6-5 provides the steps needed to configure a VPN tunnel between a remote PC and a network gateway using the VPN Wizard and the NETGEAR ProSafe VPN Client. • "Setting Up a Gateway-to-Gateway VPN Configuration" on page 6-18 provides the steps needed to configure a VPN...communications paths are Auto Policy and Manual Policy. The two alternatives for configuring VPN tunnels are special circumstances and the VPNC recommended defaults of the ADSL2+ Modem Wireless Router. and between your local network and a remote network or computer. The DG834G v4 supports both of these types of...
...on page 6-5 provides the steps needed to configure a VPN tunnel between a remote PC and a network gateway using the VPN Wizard and the NETGEAR ProSafe VPN Client. • "Setting Up a Gateway-to-Gateway VPN Configuration" on page 6-18 provides the steps needed to configure a VPN...communications paths are Auto Policy and Manual Policy. The two alternatives for configuring VPN tunnels are special circumstances and the VPNC recommended defaults of the ADSL2+ Modem Wireless Router. and between your local network and a remote network or computer. The DG834G v4 supports both of these types of...
DG834Gv4 Reference Manual
Page 88
..." on each end of the tunnel to form the VPN tunnel end points. In this case, use DG834G v4s on page 6-5 to set up this configuration. 6-2 Virtual Private Networking v2.0, September 2007 ADSL2+ Modem Wireless Router DG834G Reference Manual Client-to-Gateway VPN Tunnels Client-to-gateway VPN tunnels provide secure access from any location on... VPN Tunnels Gateway-to network resources across the Internet. VPN tunnels also enable access to -Gateway VPN Tunnels provide secure access between two or more NETGEAR VPN-enabled routers is one tunnel endpoint, running the VPN client software.
..." on each end of the tunnel to form the VPN tunnel end points. In this case, use DG834G v4s on page 6-5 to set up this configuration. 6-2 Virtual Private Networking v2.0, September 2007 ADSL2+ Modem Wireless Router DG834G Reference Manual Client-to-Gateway VPN Tunnels Client-to-gateway VPN tunnels provide secure access from any location on... VPN Tunnels Gateway-to network resources across the Internet. VPN tunnels also enable access to -Gateway VPN Tunnels provide secure access between two or more NETGEAR VPN-enabled routers is one tunnel endpoint, running the VPN client software.
DG834Gv4 Reference Manual
Page 91
...with various gateway and client software products. Look on the NETGEAR website at www.netgear.com for your DG834G v4 and the corresponding VPN endpoint gateway or client workstation. ADSL2+ Modem Wireless Router DG834G Reference Manual VPN Tunnel Configuration There are two tunnel configurations and three ways... the Internet Key Exchange (IKE) setup. • See "Using Manual Policy to -Gateway VPN Configuration 22.23.24.25 DG834G VPN Tunnel 0.0.0.0 192.168.3.1 PCs Figure 6-3 PC (Running NETGEAR ProSafe VPN Client) Setting up a VPN between your special circumstances, ...
...with various gateway and client software products. Look on the NETGEAR website at www.netgear.com for your DG834G v4 and the corresponding VPN endpoint gateway or client workstation. ADSL2+ Modem Wireless Router DG834G Reference Manual VPN Tunnel Configuration There are two tunnel configurations and three ways... the Internet Key Exchange (IKE) setup. • See "Using Manual Policy to -Gateway VPN Configuration 22.23.24.25 DG834G VPN Tunnel 0.0.0.0 192.168.3.1 PCs Figure 6-3 PC (Running NETGEAR ProSafe VPN Client) Setting up a VPN between your special circumstances, ...
DG834Gv4 Reference Manual
Page 92
... parameters, refer to "Setting Up VPN Tunnels in Special Circumstances" on page 6-32 to configure the NETGEAR ProSafe VPN Client endpoint. ADSL2+ Modem Wireless Router DG834G Reference Manual • "Step 1: Configuring the Client-to-Gateway VPN Tunnel on the DG834G v4" on page 6-6 describes how to use the VPN Wizard to configure the VPN tunnel between the...
... parameters, refer to "Setting Up VPN Tunnels in Special Circumstances" on page 6-32 to configure the NETGEAR ProSafe VPN Client endpoint. ADSL2+ Modem Wireless Router DG834G Reference Manual • "Step 1: Configuring the Client-to-Gateway VPN Tunnel on the DG834G v4" on page 6-6 describes how to use the VPN Wizard to configure the VPN tunnel between the...
DG834Gv4 Reference Manual
Page 96
... DG834G v4 on the gateway side of the VPN tunnel is in the system tray. Run the NETGEAR ProSafe Security Policy Editor program, and, using the "VPN Tunnel Configuration Worksheet" on page 6-6, create a VPN connection. Add a new connection. ADSL2+ Modem Wireless Router DG834G Reference Manual... If you might see the warning message stating "The NETGEAR ProSafe VPN Component requires at least one dial-up adapter installed in your PC, you do not...
... DG834G v4 on the gateway side of the VPN tunnel is in the system tray. Run the NETGEAR ProSafe Security Policy Editor program, and, using the "VPN Tunnel Configuration Worksheet" on page 6-6, create a VPN connection. Add a new connection. ADSL2+ Modem Wireless Router DG834G Reference Manual... If you might see the warning message stating "The NETGEAR ProSafe VPN Component requires at least one dial-up adapter installed in your PC, you do not...
DG834Gv4 Reference Manual
Page 97
ADSL2+ Modem Wireless Router DG834G Reference Manual Tip: Choose connection names that make sense to the people using Secure Gateway Tunnel check box. d. Configure the security policy in Figure 6-10. 3. In the ... this example, type 192.168.3.1 as the network address of the DG834G v4. • Mask: Enter 255.255.255.0 as the LAN Subnet Mask of the DG834G v4 in the ID Type drop-down list. The resulting connection settings are shown in the NETGEAR ProSafe VPN Client software: a. e. f. Click the Security Policy subheading to allow...
ADSL2+ Modem Wireless Router DG834G Reference Manual Tip: Choose connection names that make sense to the people using Secure Gateway Tunnel check box. d. Configure the security policy in Figure 6-10. 3. In the ... this example, type 192.168.3.1 as the network address of the DG834G v4. • Mask: Enter 255.255.255.0 as the LAN Subnet Mask of the DG834G v4 in the ID Type drop-down list. The resulting connection settings are shown in the NETGEAR ProSafe VPN Client software: a. e. f. Click the Security Policy subheading to allow...
DG834Gv4 Reference Manual
Page 98
In the Select Certificate drop-down list. Otherwise, leave this address in the DG834G v4 and either a fixed IP address or a fixed virtual IP address of the VPN client PC. In the Internet Interface section of the screen, select the... Network IP Address field. In the Network Security Policy list on the left side of the screen, select the Main Mode radio button. 4. ADSL2+ Modem Wireless Router DG834G Reference Manual c. c. If you have a dedicated cable or DSL line, select your Ethernet adapter. In the Select Phase 1 Negotiation Mode section of the Security Policy ...
In the Select Certificate drop-down list. Otherwise, leave this address in the DG834G v4 and either a fixed IP address or a fixed virtual IP address of the VPN client PC. In the Internet Interface section of the screen, select the... Network IP Address field. In the Network Security Policy list on the left side of the screen, select the Main Mode radio button. 4. ADSL2+ Modem Wireless Router DG834G Reference Manual c. c. If you have a dedicated cable or DSL line, select your Ethernet adapter. In the Select Phase 1 Negotiation Mode section of the Security Policy ...
DG834Gv4 Reference Manual
Page 99
... the My Identity section of encryption (DES or 3DES) to be used for this connection. Click Enter Key. a. Enter the DG834G v4 pre-shared key, and then click OK. In this step, you provide the type of the screen, click the Pre-Shared ...This selection must match your selection in the DG834G v4 configuration. In the Network Security Policy list on the left side of the Security Policy Editor window, expand the Security Policy heading by double clicking its name or clicking the + symbol. ADSL2+ Modem Wireless Router DG834G Reference Manual e. In this example, 12345678 is case-sensitive...
... the My Identity section of encryption (DES or 3DES) to be used for this connection. Click Enter Key. a. Enter the DG834G v4 pre-shared key, and then click OK. In this step, you provide the type of the screen, click the Pre-Shared ...This selection must match your selection in the DG834G v4 configuration. In the Network Security Policy list on the left side of the Security Policy Editor window, expand the Security Policy heading by double clicking its name or clicking the + symbol. ADSL2+ Modem Wireless Router DG834G Reference Manual e. In this example, 12345678 is case-sensitive...
DG834Gv4 Reference Manual
Page 100
ADSL2+ Modem Wireless Router DG834G Reference Manual c. d. In the Key Group drop-down list, select None. This selection ...the Encrypt Alg drop-down list, select the type of encryption that is configured for the Encryption Protocol in the DG834G v4 in Table 6-3 on page 6-6. g. f. e. Configure the VPN client key exchange proposal. In this step,... select the type of encryption (DES or 3DES) to be used for the Encryption Protocol in the DG834G v4 in the DG834G v4 configuration. In the Authentication Method drop-down list, select SHA-1. In the Hash Alg drop-down list...
ADSL2+ Modem Wireless Router DG834G Reference Manual c. d. In the Key Group drop-down list, select None. This selection ...the Encrypt Alg drop-down list, select the type of encryption that is configured for the Encryption Protocol in the DG834G v4 in Table 6-3 on page 6-6. g. f. e. Configure the VPN client key exchange proposal. In this step,... select the type of encryption (DES or 3DES) to be used for the Encryption Protocol in the DG834G v4 in the DG834G v4 configuration. In the Authentication Method drop-down list, select SHA-1. In the Hash Alg drop-down list...
DG834Gv4 Reference Manual
Page 101
...you attempt to access any IP addresses in the NETGEAR ProSafe menu bar. The NETGEAR ProSafe client reports the results of the remote VPN router's LAN. 8. c. h. After you have ...a ping test using the Connect option in the range of the attempt to the DG834G v4 modem router's network by using our example, start from the remote PC: a. Save the ...the VPN connection. Figure 6-15 Virtual Private Networking v2.0, September 2007 6-15 ADSL2+ Modem Wireless Router DG834G Reference Manual f. In the Encapsulation drop-down list, select SHA-1. Leave the Authentication Protocol (AH)...
...you attempt to access any IP addresses in the NETGEAR ProSafe menu bar. The NETGEAR ProSafe client reports the results of the remote VPN router's LAN. 8. c. h. After you have ...a ping test using the Connect option in the range of the attempt to the DG834G v4 modem router's network by using our example, start from the remote PC: a. Save the ...the VPN connection. Figure 6-15 Virtual Private Networking v2.0, September 2007 6-15 ADSL2+ Modem Wireless Router DG834G Reference Manual f. In the Encapsulation drop-down list, select SHA-1. Leave the Authentication Protocol (AH)...
DG834Gv4 Reference Manual
Page 102
To launch this function, click the Windows Start button, then select Programs > NETGEAR ProSafe VPN Client > Log Viewer. ADSL2+ Modem Wireless Router DG834G Reference Manual This causes a continuous ping to be sent to the VPN tunnel or some reason outside the VPN tunnel. 6-16 v2.0, ...the progress and status of the modem router (unless another PC already has the DG834G v4 management interface open a browser on the PC and enter the LAN IP address of the remote DG834G v4. Figure 6-16 Once the connection is due to the first DG834G v4. After between several seconds and two minutes...
To launch this function, click the Windows Start button, then select Programs > NETGEAR ProSafe VPN Client > Log Viewer. ADSL2+ Modem Wireless Router DG834G Reference Manual This causes a continuous ping to be sent to the VPN tunnel or some reason outside the VPN tunnel. 6-16 v2.0, ...the progress and status of the modem router (unless another PC already has the DG834G v4 management interface open a browser on the PC and enter the LAN IP address of the remote DG834G v4. Figure 6-16 Once the connection is due to the first DG834G v4. After between several seconds and two minutes...
DG834Gv4 Reference Manual
Page 103
... your PC is connected to a remote LAN through a VPN, you can see these settings: • The DG834G v4 has a GW Address (public IP WAN address) of 22.23.24.25. • The DG834G v4 has a Remote Address (LAN IP address) of 192.168.3.1. • The VPN client PC has a Local...of 192.168.2.2. If this example you might not have normal Internet access. Virtual Private Networking v2.0, September 2007 6-17 ADSL2+ Modem Wireless Router DG834G Reference Manual 9. When the connection is the case, you must close the VPN connection to the yellow key symbol shown in the following figure:...
... your PC is connected to a remote LAN through a VPN, you can see these settings: • The DG834G v4 has a GW Address (public IP WAN address) of 22.23.24.25. • The DG834G v4 has a Remote Address (LAN IP address) of 192.168.3.1. • The VPN client PC has a Local...of 192.168.2.2. If this example you might not have normal Internet access. Virtual Private Networking v2.0, September 2007 6-17 ADSL2+ Modem Wireless Router DG834G Reference Manual 9. When the connection is the case, you must close the VPN connection to the yellow key symbol shown in the following figure:...