User`s manual
EDR-G903/G902 Features and Functions
3-42
IPSec Configuration
IPSec configuration includes 5 parts:
• Global Setting: Enable / Disable all IPSec Tunnels and NAT-Traversal function
• Tunnel Setting: Set up the VPN Connection type and VPN network plan
• Key Exchange: Authentication for 2 VPN gateways
• Data Exchange: Data encryption between VPN gateways
• Dead Peer Detection: The mechanism for VPN Tunnel maintenance.
Global Configuration
The EtherDevice Router provides 2 Global Settings for VPN applications.
All IPSec Connection
Users can Enable or Disable all VPN services with this configuration.
NOTE The factory default setting is Disable, so when the user wants to use VPN function, make sure the setting is
enabled.
IPSec NAT-T:
If there is an external NAT device between VPN tunnels, the user must enable the NAT-T (NAT-Traversal)
function.
IPSec Quick Setting
The EtherDevice Router’s Quick Setting mode can be used to easily set up a site-to-site VPN tunnel for two
EtherDevice Router units.
When choosing the Quick setting mode, the user just needs to configure the following:
• Tunnel Setting
• Security Setting
Encryption Strength: Simple (AES-128), Standard (AES-192), Strong (AES-256)
Password of Per-shared Key
NOTE
The Encryption strength and Per-shared key should be configured the same for both EtherDevice Router units.
IPSec Advanced Setting
Click Advanced Setting to configure detailed VPN settings.










