Quick Reference Guide

ProSafe Wireless-N VPN Firewall SRXN3205 Reference Manual
Virtual Private Networking Using IPsec 6-1
v1.0, January 2010
Chapter 6
Virtual Private Networking Using IPsec
This chapter describes how to use the IPsec virtual private networking (VPN) features of the
ProSafe Wireless-N VPN Firewall SRXN3205 to provide secure, encrypted communications
between your local network and a remote network or computer.
This chapter contains the following sections:
“Using the VPN Wizard for Client and Gateway Configurations” on this page
“Creating Gateway to Gateway VPN Tunnels with the Wizard” on page 6-2
“Creating a Client to Gateway VPN Tunnel with the Wizard” on page 6-5
“Managing IPsec VPN Policies” on page 6-12
“Assigning IP Addresses to Remote Users (Mode Config)” on page 6-27
“Configuring Extended Authentication (XAUTH)” on page 6-33
“Configuring Keepalives and Dead Peer Detection” on page 6-37
“Configuring NetBIOS Bridging with VPN” on page 6-40
Using the VPN Wizard for Client and Gateway Configurations
Configuring a VPN tunnel connection requires that all settings and parameters on both sides of the
VPN tunnel match or mirror each other precisely, which can be a daunting task. The VPN Wizard
efficiently guides you through the setup procedure with a series of questions that will determine
the IPsec keys and VPN policies it sets up. The VPN Wizard will also set the parameters for the
network connection: Security Association, traffic selectors, authentication algorithm, and
encryption. The parameters used by the VPN wizard are based on the recommendations of the
VPN Consortium (VPNC), an organization that promotes multi-vendor VPN interoperability.
The section below provides wizard and NETGEAR VPN Client configuration procedures for the
following scenarios:
Using the wizard to configure a VPN tunnel between 2 VPN gateways.
Using the wizard to configure a VPN tunnel between a VPN gateway and a VPN client.