User`s guide

Vigor2820 Series User’s Guide
145
Uncheck the checkbox-This means the connection type you
select above will apply the authentication methods and security
methods in the general settings.
Netbios Naming Packet Pass – Click it to have an inquiry for data transmission between
the hosts located on both sides of VPN Tunnel while connecting.
Block – When there is conflict occurred between the hosts on
both sides of VPN Tunnel in connecting, such function can
block data transmission of Netbios Naming Packet inside the
tunnel.
Multicast via VPN Some programs might send multicast packets via VPN
connection.
Pass – Click this button to let multicast packets pass through
the router.
Block – This is default setting. Click this button to let multicast
packets be blocked by the router.
User Name This field is applicable when you select ISDN, PPTP or L2TP
with or without IPSec policy above.
Password This field is applicable when you select ISDN, PPTP or L2TP
with or without IPSec policy above.
Enable Mobile One-Time
Password (mOTP)
Check this box to make the authentication with mOTP
function.
PIN Code – Type the code for authentication (e.g, 1234).
Secret – Use the 32 digit-secret number generated by mOTP
in the mobile phone (e.g., e759bb6f0e94c7ab4fe6).
IKE Authentication
Method
This group of fields is applicable for IPSec Tunnels and L2TP
with IPSec Policy when you specify the IP address of the
remote node. The only exception is Digital Signature (X.509)
can be set when you select IPSec tunnel either with or without
specify the IP address of the remote node.
Pre-Shared Key - Check the box of Pre-Shared Key to
invoke this function and type in the required characters (1-63)
as the pre-shared key.
Digital Signature (X.509) – Check the box of Digital
Signature to invoke this function and Select one predefined
Profiles set in the VPN and Remote Access >>IPSec Peer
Identity.
IPSec Security Method This group of fields is a must for IPSec Tunnels and L2TP with
IPSec Policy when you specify the remote node. Check the
Medium, DES, 3DES or AES box as the security method.
Medium -Authentication Header (AH) means data will be
authenticated, but not be encrypted. By default, this option is
invoked. You can uncheck it to disable it.
High-Encapsulating Security Payload (ESP) means payload
(data) will be encrypted and authenticated. You may select
encryption algorithm from Data Encryption Standard (DES),
Triple DES (3DES), and AES.
Local ID - Specify a local ID to be used for Dial-in setting in
the LAN-to-LAN Profile setup. This item is optional and can be
used only in IKE aggressive mode.