DG834Gv2 Reference Manual
Page 5
...Firewall 2-2 802.11 Standards-based Wireless Networking 2-2 Easy Installation and Management 2-3 Protocol Support ...2-3 Virtual Private Networking (VPN... 2-5 Content Filtering ...2-5 Auto Sensing and Auto Uplink™ LAN Ethernet Connections 2-5 What's in the Box? ...2-5 The Router's Front Panel 2-6 The Router's Rear Panel 2-7 Chapter 3 Connecting the Router to the Internet What You Need Before You Begin 3-1 ADSL Microfilter Requirements 3-1 ADSL Microfilter 3-1 ADSL...
...Firewall 2-2 802.11 Standards-based Wireless Networking 2-2 Easy Installation and Management 2-3 Protocol Support ...2-3 Virtual Private Networking (VPN... 2-5 Content Filtering ...2-5 Auto Sensing and Auto Uplink™ LAN Ethernet Connections 2-5 What's in the Box? ...2-5 The Router's Front Panel 2-6 The Router's Rear Panel 2-7 Chapter 3 Connecting the Router to the Internet What You Need Before You Begin 3-1 ADSL Microfilter Requirements 3-1 ADSL Microfilter 3-1 ADSL...
DG834Gv2 Reference Manual
Page 8
... ...7-9 Static Route Example 7-9 How to Configure Static Routes 7-10 Universal Plug and Play (UPnP 7-12 Chapter 8 Virtual Private Networking (Advanced Feature) Overview of VPN Configuration 8-2 Client-to-Gateway VPN Tunnels 8-2 Gateway-to-Gateway VPN Tunnels 8-2 Planning a VPN ...8-3 VPN Tunnel Configuration 8-6 How to Set Up a Client-to-Gateway VPN Configuration 8-6 viii Contents 202-10006-05, June 2005
... ...7-9 Static Route Example 7-9 How to Configure Static Routes 7-10 Universal Plug and Play (UPnP 7-12 Chapter 8 Virtual Private Networking (Advanced Feature) Overview of VPN Configuration 8-2 Client-to-Gateway VPN Tunnels 8-2 Gateway-to-Gateway VPN Tunnels 8-2 Planning a VPN ...8-3 VPN Tunnel Configuration 8-6 How to Set Up a Client-to-Gateway VPN Configuration 8-6 viii Contents 202-10006-05, June 2005
DG834Gv2 Reference Manual
Page 9
... VPN Tunnel on the DG834G 8-7 Step 2: Configuring the NETGEAR ProSafe VPN Client on the Remote PC .........8-12 How to Set Up a Gateway-to-Gateway VPN Configuration 8-20 VPN Tunnel Control ...8-27 Activating a VPN Tunnel 8-27 Using the VPN Status Page to Activate a VPN Tunnel 8-27 Activate the VPN ...to Configure VPN Tunnels 8-48 Chapter 9 Troubleshooting Basic Functioning ...9-1 Power LED Not On 9-2 Test LED Never Turns On or Test LED Stays On 9-2 LAN or WAN Port LEDs Not On 9-2 Troubleshooting the Web Configuration Interface 9-3 Troubleshooting the ISP Connection 9-4 ADSL link ...9-4 ...
... VPN Tunnel on the DG834G 8-7 Step 2: Configuring the NETGEAR ProSafe VPN Client on the Remote PC .........8-12 How to Set Up a Gateway-to-Gateway VPN Configuration 8-20 VPN Tunnel Control ...8-27 Activating a VPN Tunnel 8-27 Using the VPN Status Page to Activate a VPN Tunnel 8-27 Activate the VPN ...to Configure VPN Tunnels 8-48 Chapter 9 Troubleshooting Basic Functioning ...9-1 Power LED Not On 9-2 Test LED Never Turns On or Test LED Stays On 9-2 LAN or WAN Port LEDs Not On 9-2 Troubleshooting the Web Configuration Interface 9-3 Troubleshooting the ISP Connection 9-4 ADSL link ...9-4 ...
DG834Gv2 Reference Manual
Page 12
... E-7 Interface Addressing E-7 Firewalls ...E-8 Setting Up a VPN Tunnel Between Gateways E-8 VPNC IKE Security Parameters E-10 VPNC IKE Phase I Parameters E-10 VPNC IKE Phase II Parameters E-11 Testing and Troubleshooting E-11 Additional Reading ...E-11 Appendix F NETGEAR VPN Configuration DG834G to FVL328 ...F-1 Configuration Profile F-1 xii Contents 202-10006-05, June 2005 D-16 Changes to Wireless Access Points D-16...
... E-7 Interface Addressing E-7 Firewalls ...E-8 Setting Up a VPN Tunnel Between Gateways E-8 VPNC IKE Security Parameters E-10 VPNC IKE Phase I Parameters E-10 VPNC IKE Phase II Parameters E-11 Testing and Troubleshooting E-11 Additional Reading ...E-11 Appendix F NETGEAR VPN Configuration DG834G to FVL328 ...F-1 Configuration Profile F-1 xii Contents 202-10006-05, June 2005 D-16 Changes to Wireless Access Points D-16...
DG834Gv2 Reference Manual
Page 13
...Telecommuter Example F-13 Setting Up the Client-to-Gateway VPN Configuration (Telecommuter Example) .........F-14 Step 1: Configuring the Client-to-Gateway VPN Tunnel on the VPN Router at the Employer's Main Office F-14 Step 2: Configuring the NETGEAR ProSafe VPN Client on the Remote PC at the Telecommuter's ...Home Office F-16 Monitoring the VPN Tunnel (Telecommuter Example F-25 Viewing the PC ...
...Telecommuter Example F-13 Setting Up the Client-to-Gateway VPN Configuration (Telecommuter Example) .........F-14 Step 1: Configuring the Client-to-Gateway VPN Tunnel on the VPN Router at the Employer's Main Office F-14 Step 2: Configuring the NETGEAR ProSafe VPN Client on the Remote PC at the Telecommuter's ...Home Office F-16 Monitoring the VPN Tunnel (Telecommuter Example F-25 Viewing the PC ...
DG834Gv2 Reference Manual
Page 15
..., IP addresses This guide uses the following typographical conventions: Table 1-1. This manual is written for the DG834G wireless router according to highlight information of this manual. Audience, Scope, Conventions, and Formats This reference manual assumes that... Internet, firewall, and VPN technologies tutorial information is used to these specifications: Table 1-2. Manual Scope Product Version Manual Publication Date DG834G Wireless ADSL Firewall Router June 2005 Note: Product updates are available on the Netgear website. Web site at http://kbserver.netgear.com/products...
..., IP addresses This guide uses the following typographical conventions: Table 1-1. This manual is written for the DG834G wireless router according to highlight information of this manual. Audience, Scope, Conventions, and Formats This reference manual assumes that... Internet, firewall, and VPN technologies tutorial information is used to these specifications: Table 1-2. Manual Scope Product Version Manual Publication Date DG834G Wireless ADSL Firewall Router June 2005 Note: Product updates are available on the Netgear website. Web site at http://kbserver.netgear.com/products...
DG834Gv2 Reference Manual
Page 20
...attacks, and administrator logins. A Powerful, True Firewall Unlike simple Internet sharing NAT routers, the DG834G is a true firewall, using stateful packet inspection to 54 Mbps • Works with both 802.11g and 802.11b wireless devices • 64-bit and 128-bit WEP...June 2005 Reference Manual for the Model Wireless ADSL Firewall Router DG834G • Easy, Web-based setup for installation and management • Extensive Internet protocol support • Trustworthy VPN Communications over the Internet • VPN Wizard for easy VPN configuration • Content filtering •...
...attacks, and administrator logins. A Powerful, True Firewall Unlike simple Internet sharing NAT routers, the DG834G is a true firewall, using stateful packet inspection to 54 Mbps • Works with both 802.11g and 802.11b wireless devices • 64-bit and 128-bit WEP...June 2005 Reference Manual for the Model Wireless ADSL Firewall Router DG834G • Easy, Web-based setup for installation and management • Extensive Internet protocol support • Trustworthy VPN Communications over the Internet • VPN Wizard for easy VPN configuration • Content filtering •...
DG834Gv2 Reference Manual
Page 23
...Mbps standard Ethernet network or a 100 Mbps Fast Ethernet network. Each local Ethernet port will automatically sense whether the Ethernet cable plugged into the port should contain the following VPN features: • Supports 8 VPN connections. • Supports industry standard VPN protocols The DG834G wireless...the correct configuration. It is compatible with many other VPN products. • Supports 3DES encryption for the Model Wireless ADSL Firewall Router DG834G Virtual Private Networking (VPN) The DG834G wireless router provides a secure encrypted connection between your PCs....
...Mbps standard Ethernet network or a 100 Mbps Fast Ethernet network. Each local Ethernet port will automatically sense whether the Ethernet cable plugged into the port should contain the following VPN features: • Supports 8 VPN connections. • Supports industry standard VPN protocols The DG834G wireless...the correct configuration. It is compatible with many other VPN products. • Supports 3DES encryption for the Model Wireless ADSL Firewall Router DG834G Virtual Private Networking (VPN) The DG834G wireless router provides a secure encrypted connection between your PCs....
DG834Gv2 Reference Manual
Page 107
... and the VPNC recommended defaults of the DG834G wireless router. VPN tunnels provide secure, encrypted communications between two network gateways using the VPN Wizard and the NETGEAR ProSafe VPN Client. • "How to Set Up a Gateway-to-Gateway VPN Configuration" on page 8-20 provides the steps needed to configure a VPN tunnel between your local network and a remote...
... and the VPNC recommended defaults of the DG834G wireless router. VPN tunnels provide secure, encrypted communications between two network gateways using the VPN Wizard and the NETGEAR ProSafe VPN Client. • "How to Set Up a Gateway-to-Gateway VPN Configuration" on page 8-20 provides the steps needed to configure a VPN tunnel between your local network and a remote...
DG834Gv2 Reference Manual
Page 108
...VPN Tunnel PC (Running NETGEAR ProSafe VPN Client) A VPN client access allows a remote PC to connect to your network is one tunnel endpoint, running the VPN client software. See "How to Set Up a Client-to-Gateway VPN Configuration" on page 8-6 to five concurrent tunnels. The DG834G wireless...more network gateways. The DG834G supports both of these types of VPN Configuration Two common scenarios for the Model Wireless ADSL Firewall Router DG834G Overview of VPN configurations. Reference Manual for configuring VPN tunnels are between a remote personal computer and a network gateway...
...VPN Tunnel PC (Running NETGEAR ProSafe VPN Client) A VPN client access allows a remote PC to connect to your network is one tunnel endpoint, running the VPN client software. See "How to Set Up a Client-to-Gateway VPN Configuration" on page 8-6 to five concurrent tunnels. The DG834G wireless...more network gateways. The DG834G supports both of these types of VPN Configuration Two common scenarios for the Model Wireless ADSL Firewall Router DG834G Overview of VPN configurations. Reference Manual for configuring VPN tunnels are between a remote personal computer and a network gateway...
DG834Gv2 Reference Manual
Page 109
... this case, use DG834Gs on page 8-20 to set up this configuration. Reference Manual for the Model Wireless ADSL Firewall Router DG834G DG834G VPN Firewall A VPN Tunnel DG834G VPN Firewall B PCs PCs Figure 8-2: Gateway-to-Gateway VPN Tunnel A VPN between two or more NETGEAR VPN-enabled routers is helpful to plan the network configuration and record the configuration parameters on a worksheet: Virtual...
... this case, use DG834Gs on page 8-20 to set up this configuration. Reference Manual for the Model Wireless ADSL Firewall Router DG834G DG834G VPN Firewall A VPN Tunnel DG834G VPN Firewall B PCs PCs Figure 8-2: Gateway-to-Gateway VPN Tunnel A VPN between two or more NETGEAR VPN-enabled routers is helpful to plan the network configuration and record the configuration parameters on a worksheet: Virtual...
DG834Gv2 Reference Manual
Page 110
...(as defined by a subnet or by Dynamic DNS providers (see "The Use of configuration information defines a security association (SA) between the two VPN endpoints. FQDNs supplied by a range of IP addresses), or a single PC? • Will either endpoint use Fully Qualified Domain Names (FQDNs...Group 2: Key Life in seconds: IKE Life Time in seconds: VPN Endpoint Local IPSec ID LAN IP Address Subnet Mask FQDN or Gateway IP (WAN IP Address) To set of a Fully Qualified Domain Name (FQDN)" on other endpoint. Reference Manual for the Model Wireless ADSL Firewall Router DG834G Table 8-1.
...(as defined by a subnet or by Dynamic DNS providers (see "The Use of configuration information defines a security association (SA) between the two VPN endpoints. FQDNs supplied by a range of IP addresses), or a single PC? • Will either endpoint use Fully Qualified Domain Names (FQDNs...Group 2: Key Life in seconds: IKE Life Time in seconds: VPN Endpoint Local IPSec ID LAN IP Address Subnet Mask FQDN or Gateway IP (WAN IP Address) To set of a Fully Qualified Domain Name (FQDN)" on other endpoint. Reference Manual for the Model Wireless ADSL Firewall Router DG834G Table 8-1.
DG834Gv2 Reference Manual
Page 111
... using VPNC defaults (see "Using Manual Policy to Configure VPN Tunnels" on page 8-36) - MDS: 128 bits, faster but more secure. Note: NETGEAR publishes additional interoperability scenarios with three different, unrelated keys. • What level of authentication will you use? - The ...security by the VPNC and Used in which you use ? - Look on the NETGEAR web site at www.netgear.com for the Model Wireless ADSL Firewall Router DG834G • What method will you use to Configure VPN Tunnels" on page 8-48)? Parameters Recommended by encrypting the data three times using...
... using VPNC defaults (see "Using Manual Policy to Configure VPN Tunnels" on page 8-36) - MDS: 128 bits, faster but more secure. Note: NETGEAR publishes additional interoperability scenarios with three different, unrelated keys. • What level of authentication will you use? - The ...security by the VPNC and Used in which you use ? - Look on the NETGEAR web site at www.netgear.com for the Model Wireless ADSL Firewall Router DG834G • What method will you use to Configure VPN Tunnels" on page 8-48)? Parameters Recommended by encrypting the data three times using...
DG834Gv2 Reference Manual
Page 112
...Wireless ADSL Firewall Router DG834G VPN Tunnel Configuration There are more complex and there are two tunnel configurations and three ways to configure them: • Use the VPN Wizard to configure a VPN tunnel (recommended for most situations): - How to Set Up a Client-to-Gateway VPN Configuration Setting up a VPN between a remote PC running the NETGEAR ProSafe VPN... Exchange (IKE) setup. • See "Using Manual Policy to -Gateway VPN Configuration" on page 8-12 configures the NETGEAR ProSafe VPN Client endpoint. 8-6 Virtual Private Networking (Advanced Feature) 202-10006-05, June...
...Wireless ADSL Firewall Router DG834G VPN Tunnel Configuration There are more complex and there are two tunnel configurations and three ways to configure them: • Use the VPN Wizard to configure a VPN tunnel (recommended for most situations): - How to Set Up a Client-to-Gateway VPN Configuration Setting up a VPN between a remote PC running the NETGEAR ProSafe VPN... Exchange (IKE) setup. • See "Using Manual Policy to -Gateway VPN Configuration" on page 8-12 configures the NETGEAR ProSafe VPN Client endpoint. 8-6 Virtual Private Networking (Advanced Feature) 202-10006-05, June...
DG834Gv2 Reference Manual
Page 113
Reference Manual for the Model Wireless ADSL Firewall Router DG834G 22.23.24.25 DG834G VPN Tunnel 0.0.0.0 192.168.3.1 PCs Figure 8-3: Client-to-Gateway VPN Tunnel PC (Running NETGEAR ProSafe VPN Client) Step 1: Configuring the Client-to-Gateway VPN Tunnel on page 8-5. If you have special requirements not covered by these VPNC-recommended parameters, refer to "How to Set...
Reference Manual for the Model Wireless ADSL Firewall Router DG834G 22.23.24.25 DG834G VPN Tunnel 0.0.0.0 192.168.3.1 PCs Figure 8-3: Client-to-Gateway VPN Tunnel PC (Running NETGEAR ProSafe VPN Client) Step 1: Configuring the Client-to-Gateway VPN Tunnel on page 8-5. If you have special requirements not covered by these VPNC-recommended parameters, refer to "How to Set...
DG834Gv2 Reference Manual
Page 114
... Disabled: Encryption Protocol -- Main Mode or Manual Keys: Perfect Forward Secrecy -- Reference Manual for the Model Wireless ADSL Firewall Router DG834G The worksheet below identifies the parameters used in the main menu to display this procedure to configure a client-to-gateway VPN tunnel using the VPN Wizard. 1. Click the VPN Wizard link in the following procedure.
... Disabled: Encryption Protocol -- Main Mode or Manual Keys: Perfect Forward Secrecy -- Reference Manual for the Model Wireless ADSL Firewall Router DG834G The worksheet below identifies the parameters used in the main menu to display this procedure to configure a client-to-gateway VPN tunnel using the VPN Wizard. 1. Click the VPN Wizard link in the following procedure.
DG834Gv2 Reference Manual
Page 115
Enter the new Connection Name: (e.g., RoadWarrior) Enter the pre-shared key: (e.g., 12345678) Select the radio button: A remote VPN client (single PC) Figure 8-5: Connection Name and Remote IP Type Virtual Private Networking (Advanced Feature) 8-9 202-10006-05, June 2005 Note: The Connection Name is arbitrary and not relevant to proceed. Fill in the Connection Name and the pre-shared key, select the type of target end point, and click Next to how the configuration functions. Reference Manual for the Model Wireless ADSL Firewall Router DG834G Figure 8-4: VPN Wizard Start Screen 2.
Enter the new Connection Name: (e.g., RoadWarrior) Enter the pre-shared key: (e.g., 12345678) Select the radio button: A remote VPN client (single PC) Figure 8-5: Connection Name and Remote IP Type Virtual Private Networking (Advanced Feature) 8-9 202-10006-05, June 2005 Note: The Connection Name is arbitrary and not relevant to proceed. Fill in the Connection Name and the pre-shared key, select the type of target end point, and click Next to how the configuration functions. Reference Manual for the Model Wireless ADSL Firewall Router DG834G Figure 8-4: VPN Wizard Start Screen 2.
DG834Gv2 Reference Manual
Page 116
Reference Manual for the Model Wireless ADSL Firewall Router DG834G The Summary screen below displays. Figure 8-6: VPN Wizard Summary 8-10 Virtual Private Networking (Advanced Feature) 202-10006-05, June 2005
Reference Manual for the Model Wireless ADSL Firewall Router DG834G The Summary screen below displays. Figure 8-6: VPN Wizard Summary 8-10 Virtual Private Networking (Advanced Feature) 202-10006-05, June 2005
DG834Gv2 Reference Manual
Page 117
... 3. Click Back to return to the tunnel entry and click Edit. Click Done on the Summary screen (see Figure 8-6). Reference Manual for the Model Wireless ADSL Firewall Router DG834G To view the VPNC recommended authentication and encryption settings used by the VPN Wizard, click the "here" link (see Figure 8-6) to complete the configuration procedure.
... 3. Click Back to return to the tunnel entry and click Edit. Click Done on the Summary screen (see Figure 8-6). Reference Manual for the Model Wireless ADSL Firewall Router DG834G To view the VPNC recommended authentication and encryption settings used by the VPN Wizard, click the "here" link (see Figure 8-6) to complete the configuration procedure.
DG834Gv2 Reference Manual
Page 118
... Connection. Go to the NETGEAR website (http://www.netgear.com) and select VPN01L_VPN05L in the Product Quick Find drop-down menu for the Model Wireless ADSL Firewall Router DG834G Note: Refer to "Using Auto Policy to Configure VPN Tunnels" on page 8-36 to complete the installation. • If you do not have a modem or dial-up adapter...
... Connection. Go to the NETGEAR website (http://www.netgear.com) and select VPN01L_VPN05L in the Product Quick Find drop-down menu for the Model Wireless ADSL Firewall Router DG834G Note: Refer to "Using Auto Policy to Configure VPN Tunnels" on page 8-36 to complete the installation. • If you do not have a modem or dial-up adapter...