Manual
Table Of Contents
- Preface
- Introduction
- Installation
- Basic Configuration
- LAN Configuration
- Connect to the Internet
- Wireless Settings
- VPN
- Security
- Maintenance
- Status and Statistics
- Troubleshooting
- Appendix A - Glossary
- Appendix B - Factory Default Settings
- Appendix C - Standard Services for Port Forwarding & Firewall Configuration
- Appendix D - Log Output Reference
- Appendix E - RJ-45 Pin-outs
- Appendix F - New Wi Fi Frequency table ( New appendix section )
- Appendix G - Product Statement
D-Link DSR-Series User Manual 95
Section 7 - VPN
A Manual policy does not use IKE and instead relies on manual keying to exchange authentication
parameters between the two IPsec hosts. The incoming and outgoing security parameter index
(SPI) values must be mirrored on the remote tunnel endpoint. As well the encryption and integrity
algorithms and keys must match on the remote IPsec host exactly in order for the tunnel to establish
successfully. Note that using Auto policies with IKE are preferred as in some IPsec implementations the
SPI (security parameter index) values require conversion at each endpoint.
DSR routers supports VPN roll-over feature. This means that policies congured on the primary WAN
will rollover to the secondary WAN in case of a link failure. This feature can be used only if your WAN is
congured in Auto-Rollover mode.
Note: Once you have created an IPSec policy, you may right-click the policy and select Export to save
as a le. You can then upload this to another DSR router or keep as a backup. To upload a saved policy,
refer to “Easy VPN Setup” on page 102.