D-Link DBG-2000 Product Manual 1 - Page 104

IKE Profile

Page 104 highlights

Tunnel mode Starting IP address Ending IP address Primary DNS Secondary DNS (Optional) DHCP Server Starting IP address Ending IP address Subnet mask NetBIOS broadcast Rollover Previous Save Cancel DBG-2000 User Guide Mode Config is similar to DHCP and is used to assign IP addresses to the remote VPN clients. You can enable or disable this feature. Select either Full tunnel or Split tunnel. Full Tunnel: It provides VPN client access to all the intranet and Internet services. Split Tunnel: It provides VPN client access to all the intranet services. Enter the starting IP address of the assigned IP range to the VPN clients. Enter the ending IP address of the assigned IP range to the VPN clients. Enter the IP address of the primary DNS. Enter the IP address of the secondary DNS. It is an optional field. Enable it to allow VPN clients connected to your router over IPsec to receive an assigned IP using DHCP. Enter the first IP address of the DHCP IP range. Enter the last IP address of the DHCP IP range. Enter the subnet mask for the IP range. Enable it to allow NetBIOS broadcast to travel over the VPN tunnel. To enable a VPN rollover, you must have the WAN Mode set to Rollover. Click Previous to go to the Add basic configuration page. Click Save to save your settings. Click Cancel to revert to the previous settings. IKE Profile The IKE profile is the central configuration in IPSec that defines most of the IPSec parameters such as the protocol, algorithms, SA lifetime, and key management protocol. In addition, it contains information related to algorithms such as encryption, authentication, and DH group for Phase I and II negotiations. This section lists all the configured IKE profiles. The fields displayed on the IKE profile table are as follows: Field Name IKE version In use Actions Description It displays the name of the configured IKE profile. It displays the version of IKE that has been used. It indicates if the configured IKE profile is being used or not. You can edit or delete the selected IKE profile. Note: You can not delete the IKE default profile. Click Add to add a new entry to the list. This opens the Add IKE profiles page. To delete multiple entries, select the checkboxes of the IKE profiles you want to delete, and click Delete. 104

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130

Mode Config is similar to DHCP and is used to assign IP addresses to the remote VPN
clients. You can enable or disable this feature.
Tunnel mode
Select either
or
.
Full tunnel
Split tunnel
Full Tunnel: It provides VPN client access to all the intranet and Internet services.
Split Tunnel: It provides VPN client access to all the intranet services.
Starting IP address
Enter the starting IP address of the assigned IP range to the VPN clients.
Ending IP address
Enter the ending IP address of the assigned IP range to the VPN clients.
Primary DNS
Enter the IP address of the primary DNS.
Secondary DNS (Optional)
Enter the IP address of the secondary DNS. It is an optional field.
DHCP Server
Enable it to allow VPN clients connected to your router over IPsec to receive an assigned
IP using DHCP.
Starting IP address
Enter the first IP address of the DHCP IP range.
Ending IP address
Enter the last IP address of the DHCP IP range.
Subnet mask
Enter the subnet mask for the IP range.
NetBIOS broadcast
Enable it to allow NetBIOS broadcast to travel over the VPN tunnel.
Rollover
To enable a VPN rollover, you must have the
set to
.
WAN Mode
Rollover
Previous
Click
to go to the
page.
Previous
Add basic configuration
Save
Click
to save your settings.
Save
Cancel
Click
to revert to the previous settings.
Cancel
IKE Profile
The IKE profile is the central configuration in IPSec that defines most of the IPSec parameters such as the protocol, algorithms, SA lifetime, and
key management protocol. In addition, it contains information related to algorithms such as encryption, authentication, and DH group for Phase I
and II negotiations. This section lists all the configured IKE profiles.
The fields displayed on the
table are as follows:
IKE profile
Field
Description
Name
It displays the name of the configured IKE profile.
IKE version
It displays the version of IKE that has been used.
In use
It indicates if the configured IKE profile is being used or not.
Actions
You can edit or delete the selected IKE profile.
Note: You can not delete the IKE default profile.
Click
to add a new entry to the list. This opens the
page. To delete multiple entries, select the checkboxes of the IKE
Add
Add IKE profiles
profiles you want to delete, and click
.
Delete
DBG-2000 User Guide
104