User Manual
8. The Filters Properties screen will appear, as shown in Figure B-8. Select the Addressing tab. In
the Source
address field, select A specific IP Subnet, and enter the IP Address: 192.168.1.0 and Subnet
mask:
255.255.255.0. (Enter your new values if you have changed the default settings.) In the
Destination address
field, select My IP Address.
9. If you want to enter a description for your filter, click the Description tab and enter the
description there.
10. Click the OK or Close button and the New Rule Properties screen should appear with the IP
Filer List tab
selected, as shown in Figure B-9. There should now be a listing for “Router -> win” and “win ->
Router”.
Click the OK (for WinXP) or Close (for Win2000) button on the IP Filter List window.
Figure C-7: IP Filter List
Figure C-8: Filters Properties
Figure C-9: New Rule Properties
Step 3: Configure Individual Tunnel Rules
Tunnel 1: win->Router
1. From the IP Filter List tab, shown in Figure B-10, click the filter list win->Router.
2. Click the Filter Action tab (as in Figure B-11), and click the filter action Require Security radio
button. Then,
click the Edit button.
3. From the Security Methods tab, shown in Figure B-12, verify that the Negotiate security option
is enabled,
and deselect the Accept unsecured communication, but always respond using IPSec check
box. Select
Session key Perfect Forward Secrecy, and click the OK button.
Figure C-12: Security Methods Tab
Figure C-10: IP Filter List Tab
Figure C-11: Filter Acton Tab
4. Select the Authentication Methods tab, shown in Figure B-13, and click the Edit button.
5. Change the authentication method to Use this string to protect the key exchange
(preshared key), as
shown in Figure B-14, and enter the preshared key string, such as XYZ12345. Click the OK
button.
6. This new Preshared key will be displayed in Figure B-15. Click the Apply button to continue, if it
appears on
your screen, otherwise proceed to the next step.
Figure C-13: Authentication Methods
Figure C-14: Preshared Key
Figure C-15: New Preshared Key
7. Select the Tunnel Setting tab, shown in Figure B-16, and click The tunnel endpoint is
specified by this IP
Address radio button. Then, enter the Router’s WAN IP Address.
8. Select the Connection Type tab, as shown in Figure B-17, and click All network connections.
Then, click
the OK or Close button to finish this rule.
Tunnel 2: Router->win
9. In the new policy’s properties screen, shown in Figure B-18, make sure that “win -> Router” is
selected and
deselect the Use Add Wizard check box. Then, click the Add button to create the second IP filter.
Figure C-16: Tunnel Setting Tab