User's Manual

Reference Manual for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall
4-12 Virtual Private Networking
Configuring a Remote PC to Network VPN
This procedure describes linking a remote PC and a LAN. The LAN will connect to the Internet
using an FVS318 with a fixed IP address. The PC can be connected to the Internet through dialup,
cable or DSL modem, or other means, and we will assume it has a dynamically assigned IP
address.
The PC must have a VPN client program that supports IPSec. NETGEAR recommends and
supports the SafeNet SoftRemote (or Soft-PK) Secure VPN Client for Windows, Version 5 or later.
The SafeNet VPN Client can be purchased from SafeNet at
http://www.safenet-inc.com.
Sample PC to Network VPN Tunnel Configuration Worksheet
The sample configuration worksheet below is filled in with the parameters used in the procedure
examples below. A blank worksheet is at,
“PC to Network IKE VPN Tunnel Settings
Configuration Worksheet” on page 4-27.
Table 4-2: Sample PC to Network IKE VPN Tunnel Settings Configuration Worksheet
IKE Tunnel Security Association Settings
Connection Name:
VPNLANPC
PreShared Key:
r>T(h4&3@#kB
Secure Association -- Main Mode or Aggressive Mode:
Main
Perfect Forward Secrecy:
Enabled
Encryption Protocol -- Null, 56 bit DES, or 168 bit 3DES:
DES
Key Life in seconds:
3600 (1 hour)
IKE Life Time in seconds:
28800 (8 hours)
FVM318 firewall Network and PC IP Settings
Local IPSec
Identifier
LAN IP
Network Address Subnet Mask
Gateway IP
(WAN IP Address)
Network: LAN A
LANAPCIPSEC 192.168.3.1 255.255.255.0 24.0.0.1
Computer: PC
PCIPSEC
192.168.100.2
255.255.255.255 0.0.0.0
FVM318.book Page 12 Wednesday, September 18, 2002 5:20 PM