D-Link DBG-2000 Product Manual 1 - Page 108

Field, Description, Outgoing interface, IP address, Subnet, Use VPN, Status, Device name, Subnets,

Page 108 highlights

DBG-2000 User Guide The fields displayed in the Local networks table are as follows: Field Outgoing interface IP address Name Subnet Use VPN Description It is the WAN interface on which the tunnel will be established. It displays the current WAN IP address of the device. It displays the LAN/VLAN interface's name of the local subnet. It displays the subnet IP address. Enable the subnet if you want to encrypt its traffic by IPSec VPN. The Remote VPN participants table lists all the remote VPNs and displays the following fields: Field Status Device name IP address Site Subnet(s) Join member Description It indicates the status of the remote device, whether it is online or offline. The green color indicates that it is online, and the red color indicates that it is offline. It displays the name of the remote device with which the VPN connection is established. It displays the WAN IP address of the remote gateway devices. It displays the site of the remote gateway devices. It displays the subnets of the remote gateway devices. It is a hyperlink; if you hover your mouse over it, you can view the subnet and the subnet mask of the remote device. If this option is enabled, the tunnel configuration needed to establish a tunnel is pushed to the remote peers. Hub-and-Spoke The Site-and-Site VPN connections between DBG-2000 devices will automatically be established between all Site-and-Site enabled peers in the same organization. However, this is often undesirable because such connections may establish unnecessary IPSec tunnels between remote sites and create performance-degrading networking overhead. Therefore, it is best to configure Hub and spoke in such cases, which designates one DBG-2000 device as the Hub and all remote sites as the Spoke. In addition, the Hub-and-Spoke mode can be useful in organizations where several auxiliary sites require a connection to the HQ. There are two options for configuring the DBG-2000 in the Hub-and-Spoke mode: 1. Hub (Mesh): The DBG-2000 device will establish VPN tunnels to all remote VPN peers that are also configured in this mode. If another DBG-2000 in the same organization is configured as a hub, it can be added as an Exist hub. If a DBG-2000 device is selected as a 108

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130

1.
The fields displayed in the
table are as follows:
Local networks
Field
Description
Outgoing interface
It is the WAN interface on which the tunnel will be established.
IP address
It displays the current WAN IP address of the device.
Name
It displays the LAN/VLAN interface’s name of the local subnet.
Subnet
It displays the subnet IP address.
Use VPN
Enable the subnet if you want to encrypt its traffic by IPSec VPN.
The
table lists all the remote VPNs and displays the following fields:
Remote VPN participants
Field
Description
Status
It indicates the status of the remote device, whether it is online or offline. The green color
indicates that it is online, and the red color indicates that it is offline.
Device name
It displays the name of the remote device with which the VPN connection is established.
IP address
It displays the WAN IP address of the remote gateway devices.
Site
It displays the site of the remote gateway devices.
Subnet(s)
It displays the subnets of the remote gateway devices. It is a hyperlink; if you hover your
mouse over it, you can view the subnet and the subnet mask of the remote device.
Join member
If this option is enabled, the tunnel configuration needed to establish a tunnel is pushed to
the remote peers.
Hub-and-Spoke
The Site-and-Site VPN connections between DBG-2000 devices will automatically be established between all Site-and-Site enabled peers in the
same organization. However, this is often undesirable because such connections may establish unnecessary IPSec tunnels between remote
sites and create performance-degrading networking overhead. Therefore, it is best to configure Hub and spoke in such cases, which designates
one DBG-2000 device as the
and all remote sites as the
. In addition, the Hub-and-Spoke mode can be useful in organizations where
Hub
Spoke
several auxiliary sites require a connection to the HQ.
There are two options for configuring the DBG-2000 in the Hub-and-Spoke mode:
Hub (Mesh)
: The DBG-2000 device will establish VPN tunnels to all remote VPN peers that are also configured in this mode. If another
DBG-2000 in the same organization is configured as a hub, it can be added as an
. If a DBG-2000 device is selected as a
Exist hub
DBG-2000 User Guide
108