User`s guide
Table Of Contents
- Table of Contents
- 1. Preface
- 2. Initial Configuration
- 3. Advanced Configuration
- 4. Application and Examples
- 4.1 How to Configure Multi-Subnet in Vigor2830
- 4.2 How Can I Use FTP to Get the Files from USB Storage DeviceConnecting to Vigor Router?
- 4.3 How to Send out SMS via Vigor Router
- 4.4 Web Portal Log-In Application for Wireless Client
- 4.5 How to Customize Your Login Page
- 4.6 Create a LAN-to-LAN Connection Between Remote Officeand Headquarter
- 4.7 Create a Remote Dial-in User Connection Between theTeleworker and Headquarter
- 4.8 QoS Setting Example
- 4.9 Upgrade Firmware for Your Router
- 4.10 Request a certificate from a CA server on Windows CAServer
- 4.11 Request a CA Certificate and Set as Trusted on WindowsCA Server
- 4.12 Creating an Account for MyVigor
- 5. Trouble Shooting
- 5.1 Checking If the Hardware Status Is OK or Not
- 5.2 Checking If the Network Connection Settings on YourComputer Is OK or Not
- 5.3 Pinging the Router from Your Computer
- 5.4 Checking If the ISP Settings are OK or Not
- 5.5 Problems for 3G Network Connection
- 5.6 Backing to Factory Default Setting If Necessary
- 5.7 Contacting Your Dealer

Vigor2830 Series User’s Guide
174
VPN Dial-Out
Through
Use the drop down menu to choose a proper WAN interface
for this profile. This setting is useful for dial-out only.
WAN1 First - While connecting, the router will use WAN1
as the first channel for VPN connection. If WAN1 fails, the
router will use another WAN interface instead.
WAN1 Only - While connecting, the router will use WAN1
as the only channel for VPN connection.
WAN2 First - While connecting, the router will use WAN2
as the first channel for VPN connection. If WAN2 fails, the
router will use another WAN interface instead.
WAN2 Only - While connecting, the router will use WAN2
as the only channel for VPN connection.
Always On
Check to enable router always keep VPN connection.
Pre-Shared Key
IKE Authentication Method usually applies to those are
remote dial-in user or node (LAN to LAN) which uses
dynamic IP address and IPSec-related VPN connections
such as L2TP over IPSec and IPSec tunnel.
Pre-Shared Key- Specify a key for IKE authentication.
Confirm Pre-Shared Key-Confirm the pre-shared key.
Digital Signature
(X.509)
Click Digital Signature to invoke this function. Use the
drop down list to choose one of the certificates for using.
You have to configure one certificate at least previously in
Certificate Management >> Local Certificate. Otherwise,
the setting you choose here will not be effective.
Peer ID – Choose the peer ID selection from the drop down
list.
Local ID – Choose Alternative Subject Name First or
Subject Name First.
IPSec Security
Method
Medium - Authentication Header (AH) means data will be
authenticated, but not be encrypted. By default, this option
is active.
High - Encapsulating Security Payload (ESP) means
payload (data) will be encrypted and authenticated. You
may select encryption algorithm from Data Encryption
Standard (DES), Triple DES (3DES), and AES.
User Name
This field is used to authenticate for connection when you
select PPTP or L2TP with or without IPSec policy above.
Password
This field is used to authenticate for connection when you
select PPTP or L2TP with or without IPSec policy above.
Remote Network IP
Please type one LAN IP address (according to the real
location of the remote host) for building VPN connection.
Remote Network
Mask
Please type the network mask (according to the real location
of the remote host) for building VPN connection.










