User`s manual

EDR-G903/G902 Features and Functions
3-52
L2TP for Remote User Maintenance
The following example shows how a Roaming user uses L2TP over IPSec to connect to theremote site network.
VPN Plan:
All communication from the Roaming user (no fixed IP) to the Remote site Network (100.100.3.0/24) needs
to pass through the VPN tunnel.
Communication goes through the Internet.
The configuration of the WAN/LAN interface for the EtherDevice Router is shown in the following table.
Configuration EtherDevice Router (1)
EDR-G903
Interface Setting
WAN IP 100.100.2.1
LAN IP 100.100.3.1
Based on the requirement and VPN plan, the recommended configuration for L2TP over IPSec is shown in the
following table:
Configuration EtherDevice Router (1)
L2TP Server Setting L2TP Server Mode (WAN1) Enable
Local IP (L2TP Server IP) 100.100.4.1
Offer IP Range 100.100.4.1 ~100.100.4.100
Login User / Password User01 / 12345
Tunnel Setting Connection Type Site to Site (Any)
L2TP Tunnel Enable
Local Network 100.100.3.1 / 24
(Same as LAN Interface)
Startup mode Wait for Connection
Key Exchange Per-shared Key 12345
Data Exchange Encryption Algorithm
Harsh Algorithm
3DES
SHA1
Traffic Prioritization
The EtherDevice Routers traffic prioritization capability provides Quality of Service (QoS) to your network by
making data delivery more reliable. You can prioritize traffic on your network to ensure that high priority data
is transmitted with minimum delay. Traffic can be controlled by a set of rules to obtain the required Quality of
Service for your network.
NOTE The maximum number of Firewall policies for the EtherDevice Router is 256.