User`s guide

VigorPro5510 Series User’s Guide
165
IPSec Tunnel
Allow the remote dial-in user to trigger an IPSec VPN
connection through Internet.
L2TP
Allow the remote dial-in user to make a L2TP VPN
connection through the Internet. You can select to use L2TP
alone or with IPSec. Select from below:
None- Do not apply the IPSec policy. Accordingly, the VPN
connection employed the L2TP without IPSec policy can be
viewed as one pure L2TP connection.
Nice to Have- Apply the IPSec policy first, if it is applicable
during negotiation. Otherwise, the dial-in VPN connection
becomes one pure L2TP connection.
Must- Specify the IPSec policy to be definitely applied on
the L2TP connection.
Specify CLID or Remote
VPN Gateway
You can specify the IP address of the remote dial-in user or
peer ID (should be the same with the ID setting in dial-in
type) by checking the box. Enter Peer ISDN number if you
select ISDN above (This feature is useful for i model only.).
Also, you should further specify the corresponding security
methods on the right side.
If you uncheck the checkbox, the connection type you select
above will apply the authentication methods and security
methods in the general settings.
User Name
This field is applicable when you select ISDN, PPTP or
L2TP with or without IPSec policy above.
Password
This field is applicable when you select ISDN, PPTP or
L2TP with or without IPSec policy above.
VJ Compression
VJ Compression is used for TCP/IP protocol header
compression. This field is applicable when you select ISDN,
PPTP or L2TP with or without IPSec policy above.
IKE Authentication
Method
This group of fields is applicable for IPSec Tunnels and
L2TP with IPSec Policy.
Pre-Shared Key-Input 1-63 characters as pre-shared key.
Digital Signature (X.509) – This setting will be available
when IPSec Tunnel is selected. Click this radio button to
invoke this function and select one predefined profile in the
Peer ID (set from VPN and Remote Access>>IPSec Peer
Identity).
Peer ID – Display the IPSec Peer Identity profiles. Use the
drop down menu to choose any one desired.
Local ID – There are two selections offered here. Choose
Alternative Subject Name First or choose Subject Name
First based on the local certificate selected below.
IPSec Security Method
This group of fields is a must for IPSec Tunnels and L2TP
with IPSec Policy when you specify the remote node.
Medium- Authentication Header (AH) means data will be
authenticated, but not be encrypted. By default, this option is
active.