Owner's Manual
122 | Chapter 8. Virtual Private Networking
N300 Wireless ADSL2+ Modem Router DGN2200
This setting applies to both IKE and IPSec SAs. When configuring the remote endpoint to
match this setting, you might have to specify the key group used. For this device, the key
group is the same as the DH Group setting in the IKE section.
Example of Using Auto Policy
Gateway A
Gateway B
VPN Tunnel
Internet
22.23.24.25
14.15.16.17
IP: 192.168.0.1
IP:192.168.3.1
Figure 22. Auto Policy
The following settings are assumed for this example:.
Table 7. Gateway-to-Gateway VPN Tunnel Configuration Worksheet
Parameter Value to Be Entered Field Selection
Connection Name GtoG N/A
Pre-Shared Key 12345678 N/A
Secure Association
N/A Main Mode Manual Keys
Perfect Forward secrecy N/A
Enabled Disabled
Encryption Protocol N/A
DES 3DES
Authentication Protocol N/A
MD5 SHA-1
Diffie-Hellman (DH) Group N/A
Group 1 Group 2
Key Life in seconds 28800 (8 hours) N/A
IKE Life Time in seconds 3600 (1 hour) N/A
VPN Endpoint Local IPSecID LAN IP Address Subnet Mask
FQDN or Gateway
IP (WAN IP Address
Gateway_A GW_A 192.168.0.1 255.255.255.0 14.15.16.17
Gateway_B GW_B 192.168.3.1 255.255.255.0 22.23.24.25
To use Auto Policy:
1. Set the LAN IPs on each modem router to different subnets and configure each correctly
for the Internet.










