DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide



Similar documents
How To Set Up A Vpn Tunnel Between Winxp And Zwall On A Pc 2 And Winxp On A Windows Xp 2 On A Microsoft Gbk2 (Windows) On A Macbook 2 (Windows 2) On An Ip

Configuring IPsec between a Microsoft Windows XP Professional (1 NIC) and the VPN router

Establishing a VPN tunnel to CNet CWR-854 VPN router using WinXP IPSec client

CREATING AN IKE IPSEC TUNNEL BETWEEN AN INTERNET SECURITY ROUTER AND A WINDOWS 2000/XP PC

OvisLink 8000VPN VPN Guide WL/IP-8000VPN. Version 0.6

Configuring TheGreenBow VPN Client with a TP-LINK VPN Router

Configuring Windows 2000/XP IPsec for Site-to-Site VPN

How To Industrial Networking

Windows XP VPN Client Example

Configure VPN between ProSafe VPN Client Software and FVG318

UTM - VPN: Configuring a Site to Site VPN Policy using Main Mode (Static IP address on both sites) i...

Lab 4.4.8a Configure a Cisco GRE over IPSec Tunnel using SDM

How to Setup PPTP VPN Between a Windows PPTP Client and the DIR-130.

How to setup PPTP VPN connection with DI-804HV or DI-808HV using Windows PPTP client

DFL-210/260, DFL-800/860, DFL-1600/2500 How to setup IPSec VPN connection

How To Establish IPSec VPN between Cyberoam and Microsoft Azure

How to setup a VPN on Windows XP in Safari.

VPN L2TP Application. Installation Guide

Setting up D-Link VPN Client to VPN Routers

Astaro Security Gateway V8. Remote Access via L2TP over IPSec Configuring ASG and Client

Laboratory Exercises V: IP Security Protocol (IPSec)

Chapter 4 Virtual Private Networking

Configuration Guide. How to set up the IPSec site-to-site Tunnel between the D-Link DSR Router and the Cisco Firewall. Overview

VPN Consortium Scenario 1: Gateway-to-Gateway with Preshared Secrets

VPN Consortium Scenario 1: Gateway-to-Gateway with Preshared Secrets

IPsec VPN Application Guide REV:

Configuring SSH Sentinel VPN client and D-Link DFL-500 Firewall

VPN Wizard Default Settings and General Information

Configuring an IPSec Tunnel between a Firebox & a Check Point FireWall-1

Configuring IPSec VPN Tunnel between NetScreen Remote Client and RN300

Create a VPN on your ipad, iphone or ipod Touch and SonicWALL NSA UTM firewall - Part 1: SonicWALL NSA Appliance

How To Configure An Ipsec Tunnel On A Network With A Network Gateways (Dfl-800) On A Pnet 2.5V2.5 (Dlf-600) On An Ipse Vpn

Netgear ProSafe VPN firewall (FVS318 or FVM318) to Cisco PIX firewall

Configuring IPsec VPN with a FortiGate and a Cisco ASA

Purple Sturgeon Standard VPN Installation Manual for Windows XP

Configuring a Check Point FireWall-1 to SOHO IPSec Tunnel

How To Establish IPSec VPN connection between Cyberoam and Mikrotik router

ZyWALL 5. Internet Security Appliance. Quick Start Guide Version 3.62 (XD.0) May 2004

ISG50 Application Note Version 1.0 June, 2011

VPN Configuration of ProSafe VPN Lite software and NETGEAR ProSafe Router:

Connecting to the FILTER Virtual Private Network (VPN)

Chapter 6 Basic Virtual Private Networking

Configuration Guide. How to set up the IPSec site-to-site Tunnel between the D-Link DSR Router and the Sonicwall Firewall.

RouteFinder. IPSec VPN Client. Setup Examples. Reference Guide. Internet Security Appliance

Configure IPSec VPN Tunnels With the Wizard

Chapter 8 Virtual Private Networking

Use Shrew Soft VPN Client to connect with IPSec VPN Server on RV130 and RV130W

Configuring the OfficeConnect Secure Gateway for a remote L2TP over IPSec connection

Internet Protocol Security (IPSec)

SQL Server Setup for Assistant/Pro applications Compliance Information Systems

Defender EAP Agent Installation and Configuration Guide

How to configure VPN function on TP-LINK Routers

V310 Support Note Version 1.0 November, 2011

Implementing and Managing Security for Network Communications

IPSec Pass through via Gateway to Gateway VPN Connection

Configure an IPSec Tunnel between a Firebox Vclass & a Check Point FireWall-1

Fireware How To VPN. Introduction. Is there anything I need to know before I start? Configuring a BOVPN Gateway

Global VPN Client Getting Started Guide

How to configure VPN function on TP-LINK Routers

For paid computer support call

VPN. VPN For BIPAC 741/743GE

Netopia TheGreenBow IPSec VPN Client. Configuration Guide.

Application Note: Integrate Juniper IPSec VPN with Gemalto SA Server. October

Setting up VPN connection: DI-824VUP+ with Windows PPTP client

Apliware firewall. TheGreenBow IPSec VPN Client. Configuration Guide.

D-Link DAP-1360 Repeater Mode Configuration

Chapter 5 Virtual Private Networking Using IPsec

Configuring Network Load Balancing with Cerberus FTP Server

Using IPSec in Windows 2000 and XP, Part 2

Sophos Anti-Virus for NetApp Storage Systems startup guide

Cisco RV 120W Wireless-N VPN Firewall

Step-by-Step Guide for Setting Up VPN-based Remote Access in a

Gateway to Gateway VPN Connection

WatchGuard Mobile User VPN Guide

Application Note. Using a Windows NT Domain / Active Directory for User Authentication NetScreen Devices 8/15/02 Jay Ratford Version 1.

Katana Client to Linksys VPN Gateway

VPN Configuration Guide. ZyWALL USG Series / ZyWALL 1050

Ingate Firewall. TheGreenBow IPSec VPN Client Configuration Guide.

VPN Overview. The path for wireless VPN users

D-Link. DI-804HV Broadband Hardware VPN Router. Manual

Nortel VPN Client. Customer Care Center Office of Enterprise Technology (OET) for Windows Vista 64-bit Operating System

INSTALLATION GUIDE ANYCONNECT ON WINDOWS WORKSTATIONS

Configuring IPsec VPN between a FortiGate and Microsoft Azure

Configuring an IPsec VPN to provide ios devices with secure, remote access to the network

RF550VPN and RF560VPN

Scenario: IPsec Remote-Access VPN Configuration

Shellfire L2TP-IPSec Setup Windows XP

Configuration Guide. How to set up the IPSec site-to-site Tunnel between the D-Link DSR Router and the Fortinet Firewall. Overview

INSTALLATION GUIDE ANYCONNECT ON WINDOWS WORKSTATIONS

VPN Quick Configuration Guide. Astaro Security Gateway V8

Internet. SonicWALL IP SEV IP IP IP Network Mask

How to Configure a Secure Connection to Microsoft SQL Server

Phone: Fax: Box: 230

VPNC Interoperability Profile

Cisco SA 500 Series Security Appliance

How to set up Outlook Anywhere on your home system

Virtual Data Centre. User Guide

Scenario: Remote-Access VPN Configuration

STONEGATE IPSEC VPN 5.1 VPN CONSORTIUM INTEROPERABILITY PROFILE

INSTALLATION GUIDE ANYCONNECT ON WINDOWS WORKSTATIONS

Transcription:

DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide This guide will show how to configure a Windows 2000/XP machine to make an IPsec VPN Tunnel connection to a DI-804HV. Below is the example network that this document is based on. Technical Requirement: Customer is required to understand their network and Windows 2000/XP well for this configuration. Please consult a Microsoft certified professional if unsure. The information provided here is for your reference only. D-Link will not be held responsible for any consequences arise from it. Internet DSL- 300G+ DI-804HV WAN IP: 10.0.0.1 IP: 10.0.0.2 LAN: 192.168.0.0/24 Windows 2000 Professional Workstation VPN Client

DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide Page 2 DI-804HV Configuration 1. Type in the IP address of the DI-804HV in the address bar of the browser. Log-in using the default username and password. 2. Click on VPN on the lefthand side menu. Make sure that VPN is checked and enter 5 for maximum number of tunnels. Click on Apply and then Restart to save the settings. Log-in again and then Click on Home VPN Dynamic VPN Settings. 3. Enter the following details for the Dynamic VPN connection. Enter the Tunnel name (client). Enter the Local Subnet/Netmask (192.168.0.0/255.255.255. 0). Enter the pre-share key. Click on Apply and then Restart to save the settings. Log-in again and come back to this screen. Now click on Select IKE Proposal.

DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide Page 3 4. Under ID #1, enter the name 3DES-MD5, DH- Group = Group2, Encrypt algorithm = 3DES, Auth algorithm = MD5, Life Time = 28800, Life Time Unit = Sec. Set the Proposal ID at the bottom to #1 and then click on the Add to button. Click on Apply and then Restart. 5. Click on Home VPN Click on Dynamic VPN Settings Click on Select IPsec Proposal. Under ID #1, enter the Proposal Name = 3DES-MD5, DH- Group = Group2, Encap Protocol = ESP, Encrypt algorithm = 3DES, Auth algorithm = MD5, Life Time = 3600, Life Time Unit = Sec. Set the Proposal ID at the bottom to #1 and then click on the Add to button. Click on Apply and then Restart.

DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide Page 4 Windows 2000/XP Configuration 1. Go into Start Run and the type in MMC to bring up the Console. 2. Click on Console and then Click on Add/Remove Snap In. In Windows XP, click on File Add/Remove Snap-in. 3. Click on the Add Button. 4. Select IP Security Policy Management and then Click on Add.

DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide Page 5 5. Select Local computer and then click on Finish. 6. Click on Close on the Add Standalone Snap-in window. 7. Click on OK in the Add/Remove Snap-in.

DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide Page 6 8. Right-Click on IP Security Policies on Local Machine. Select Create IP Security Policy. 9. The wizard should then come up. Click Next to continue. 10. Enter the name for the Policy as well as the description. Click Next.

DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide Page 7 11. Uncheck Activate the default response rule. Click Next. 12. Click on Finish. 13. The Properties window for the newly created policy should then come up. Click on Add.

DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide Page 8 14. Click on Add under IP Filter List. 15. Enter the name and the description for the New IP Filter List. Uncheck the Use Add Wizard. Click on Add. 16. Select A specific IP subnet for the Source address and enter the Internal LAN range on the DI-804HV side. Select My IP Address for the Destination address. Uncheck the Mirrored. Option at the bottom of the screen. Click OK.

DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide Page 9 17. Click Close. 18. Select the newly created IP Filter. 19. Click on the Filter Action Tab. Select Require Security. Click on Edit.

DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide Page 10 20. Move the 3DES/MD5 security method to the top. Check the Session key Perfect Forward Secrecy. Click OK. 21. Click on Connection Type Tab. Select All network connections. 22. Click on Tunnel Setting Tab. Specify the tunnel endpoint as the W2K Pro/XP client IP address (10.0.0.2 in this example).

DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide Page 11 23. Click on Authentication Methods Tab. Click on Kerberos and then Click on Edit. 24. Select Use this string to protect the key exchange (preshared key). Type in the Preshared key. Click OK. 25. Click Close.

DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide Page 12 26. Select the newly created rule. Click on Add. 27. Click on Add under IP Filter List. 28. Enter the name and the description for the New IP Filter List. Uncheck the Use Add Wizard. Click on Add.

DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide Page 13 29. Select My IP Address for the Source address. Uncheck the Mirrored. Option at the bottom of the screen. Select A specific IP subnet for the Destination address and enter the Internal LAN range on the DI-804V side. Click OK. 30. Click on Close. 31. Select the newly created IP Filter Right (Single User) to Left(DI-804HV ).

DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide Page 14 32. Click on the Filter Action Tab. Select Require Security. You don t need to click on Edit. 33. Click on Connection Type Tab. Select All network connections. 34. Click on Tunnel Setting Tab. Specify the tunnel endpoint as the WAN IP address of the DI-804HV.

DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide Page 15 35. Click on Authentication Methods Tab. Click on Kerberos and then Click on Edit. 36. Select Use this string to protect the key exchange (preshared key). Type in the Preshared key. Click OK. 37. Click Close.

DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide Page 16 38. Select the newly created rule Right (Single User).. Click Close. 39. Click on the General Tab and then the Advanced Button. 40. Check the Master key Perfect Forward Secrecy. Click on the Methods button.

DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide Page 17 41. Move the IKE/3DES/MD5 to the top. Click OK. 42. Click OK. 43. Click Close. 44. Right-click on the new policy and select Assign to activate the policy.

DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide Page 18 45. You can then ping an Internal LAN IP address on the DI-804HV side (i.e. 192.168.0.4 in this example) in the DOS prompt. It will then start Negotiating IP security and eventually you will get a reply. 46. Please note that if you make any changes to the IPsec policy, you will need to Restart the IPsec Policy Agent in order for the changes to take effect. You can do this by going into Start Settings Control Panel Administrative Tools Services. 47. In Windows 2000 Professional, you can monitor the IPsec tunnels that you have by running IPSECMON.EXE in Start Run. In Windows XP, you can add a snap-in in the MMC called IP Security Monitor.

DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide Page 19 48. In Windows XP, you can monitor the IPsec tunnel by adding the IP Security Monitor Snap/IP. You can do this by going into File Add/Remove Snap-In Click Add Select IP Security Monitor. You can check under IP Security Monitor Quick Mode Security Association for any active Tunnels.