NETGEARメーカーDG834GSPの使用説明書/サービス説明書
ページ先へ移動 of 32
NETGEAR VPN Configuration B-1 v1.0, June 2007 Appendix B NETGEAR VPN Configuration DG834GSP to FVL328 This appendix is a case study on how to configure a secure IPSec VPN tunnel from a NETGEAR DG834GSP to a FVL328. This case study follows the VPN Consortium in teroperability profile guidelines (found at http://www .
Reference Manual for the ADSL Modem Wireless Router DG834GSP B-2 NETGEAR VPN Configuration v1.0, June 2007 S tep-By-Step Configuration 1. Configure the DG834GSP as in the Gateway-to -Gateway procedure.
Reference Manual for the ADSL Modem Wireless Router DG834GSP NETGEAR VPN Configuration B-3 v1.0, June 2007 Figure B-2 toFVL328 10.5.6.1 172.23. 9.1 toFVL328 22.
Reference Manual for the ADSL Modem Wireless Router DG834GSP B-4 NETGEAR VPN Configuration v1.0, June 2007 2. Configure the FVL328 as in the Gateway-to-Gatewa y procedures for the VPN W izard (see “How to Set Up a Gateway-to-Gatew ay VPN Configuration” o n page 8-21 ), being certain to use appropriate network addresses for the environment.
Reference Manual for the ADSL Modem Wireless Router DG834GSP NETGEAR VPN Configuration B-5 v1.0, June 2007 Figure B-3 toDG834 toDG834 toDG834 toDG834 toDG834 22.
Reference Manual for the ADSL Modem Wireless Router DG834GSP B-6 NETGEAR VPN Configuration v1.0, June 2007 3. T est the VPN tunnel by pinging the remote network from a PC attached to the DG834GSP. a. Open the command prompt (S tart -> Run -> cmd) b.
Reference Manual for the ADSL Modem Wireless Router DG834GSP NETGEAR VPN Configuration B-7 v1.0, June 2007 T able B-2. Profile Summa ry VPN Consortium Scenario: Scenario 1 T ype of VPN LAN-to-LAN or G.
Reference Manual for the ADSL Modem Wireless Router DG834GSP B-8 NETGEAR VPN Configuration v1.0, June 2007 The Use of a Fully Qualified Domain Name (FQDN) Many ISPs (Internet Service Pr oviders) provide connectivity to their customers using dynamic instead of static IP addressing.
Reference Manual for the ADSL Modem Wireless Router DG834GSP NETGEAR VPN Configuration B-9 v1.0, June 2007 3. On the DG834GSP, configur e the Dynamic DNS settings. a. Browse to the Dynamic DNS Setup Screen (see Figure B-6 ) in the Advanced menu. b. Configure this screen with appropriate ac count and hostname settings an d then click Apply .
Reference Manual for the ADSL Modem Wireless Router DG834GSP B-10 NETGEAR VPN Configuration v1.0, June 2007 4. On the FVL328, configure th e Dynamic DNS settings. Assume a properly configured DynDNS account. a. Browse to the Dynamic DNS Setup Screen (see Figure B-8 ) in the Advanced menu.
Reference Manual for the ADSL Modem Wireless Router DG834GSP NETGEAR VPN Configuration B-11 v1.0, June 2007 c. Click Show S tatus . The resulting screen should show Update OK: good (see Figure B-10 ).
Reference Manual for the ADSL Modem Wireless Router DG834GSP B-12 NETGEAR VPN Configuration v1.0, June 2007 5. Configure the DG834GSP as in the Gateway-to -Gateway procedures using the VPN Wizard (see “How to Set Up a Gateway-to-Gatew ay VPN Co nfiguration” on page 8-21 ), being certain to use appropriate network addresses for the environment.
Reference Manual for the ADSL Modem Wireless Router DG834GSP NETGEAR VPN Configuration B-13 v1.0, June 2007 Figure B-1 1 Note: The pings may fail the first time.
Reference Manual for the ADSL Modem Wireless Router DG834GSP B-14 NETGEAR VPN Configuration v1.0, June 2007 Configuration Summary (T elecommuter Example) The configuration in this document follows the add ressing and configuration mechanics defin ed by the VPN Consortium.
Reference Manual for the ADSL Modem Wireless Router DG834GSP NETGEAR VPN Configuration B-15 v1.0, June 2007 • Step 2: Configuring the NETGEAR ProSafe VPN Client on the Remote PC at the T elecommuter ’ s Home Office con figures the NETGEAR ProSafe VPN Client endpoint.
Reference Manual for the ADSL Modem Wireless Router DG834GSP B-16 NETGEAR VPN Configuration v1.0, June 2007 Figure B-13 Fully Qualified Domain Name toDG834G .com (in this example) Fully Qualified Domain Name from DG834G .com (in this example) fromDG834GSP (in the example) Dynamic IP address Subnet addr ess Single addr ess 192.
Reference Manual for the ADSL Modem Wireless Router DG834GSP NETGEAR VPN Configuration B-17 v1.0, June 2007 2. Click Apply when done to get the VPN Policie s scre en. T o view or modify the tunnel settings, select th e radio button next to the tunnel entry and click Edit .
Reference Manual for the ADSL Modem Wireless Router DG834GSP B-18 NETGEAR VPN Configuration v1.0, June 2007 S tep 2: Configuring the NETGE AR ProSafe VPN C lient on the Remote PC at the T elecomm uter ’ s Home O ffice This procedure describes how to configure th e 54 Mbps ADSL Modem W ireless Router Model DG834GSP.
Reference Manual for the ADSL Modem Wireless Router DG834GSP NETGEAR VPN Configuration B-19 v1.0, June 2007 b. From the Edit menu of the Security Policy Editor , click Add , then Connection .
Reference Manual for the ADSL Modem Wireless Router DG834GSP B-20 NETGEAR VPN Configuration v1.0, June 2007 c. Select Secur e in the Connection Security check-box group. d. Select IP Subnet in the ID T ype menu. e. In this example, typ e 10.1.1.1 in the Subnet field as the network address of the DG834GSP.
Reference Manual for the ADSL Modem Wireless Router DG834GSP NETGEAR VPN Configuration B-21 v1.0, June 2007 b. Click on the Security Policy subheading to show the Security Policy menu. c. Select the Main Mode in the Select Phase 1 Negotiation Mode check box.
Reference Manual for the ADSL Modem Wireless Router DG834GSP B-22 NETGEAR VPN Configuration v1.0, June 2007 a. In the Network Security Policy list on the left side of the Security Policy Editor window , click My Identity . b. Choose None in the Select Certificate menu.
Reference Manual for the ADSL Modem Wireless Router DG834GSP NETGEAR VPN Configuration B-23 v1.0, June 2007 e. Click the Pre-Shar ed Key button. f. In the Pre-Sh ared Key dialog box, click the Enter Key button. Enter the DG834GSP's Pre-Shar ed Key and click OK .
Reference Manual for the ADSL Modem Wireless Router DG834GSP B-24 NETGEAR VPN Configuration v1.0, June 2007 c. In the Authentication Method menu, select Pre-Shar ed key . d. In the Encry pt A l g menu, select the type of encr yption. In this example, use T riple DES .
Reference Manual for the ADSL Modem Wireless Router DG834GSP NETGEAR VPN Configuration B-25 v1.0, June 2007 a. Expand the Key Exchange subheading by double clicking its name or clickin g on the “+” symbol. Then select Propos al 1 below Key Exchange .
Reference Manual for the ADSL Modem Wireless Router DG834GSP B-26 NETGEAR VPN Configuration v1.0, June 2007 T o check the VPN Connection , you can initiate a request from the remote PC to the VPN router ’ s network by using the Connect option in the ADSL Modem W ireless Router menu bar (see Figure B-22 ).
Reference Manual for the ADSL Modem Wireless Router DG834GSP NETGEAR VPN Configuration B-27 v1.0, June 2007 c. Ty p e ping -t 10.1.1.1 , and then click OK . This will cause a continuous ping to be sent to the VPN router . After between several seconds and two minutes, the pi ng response should change from timed out to rep l y .
Reference Manual for the ADSL Modem Wireless Router DG834GSP B-28 NETGEAR VPN Configuration v1.0, June 2007 Monitoring the VPN T unnel (T elecommuter Example) V iewing the PC Client’ s Conn ection M.
Reference Manual for the ADSL Modem Wireless Router DG834GSP NETGEAR VPN Configuration B-29 v1.0, June 2007 While the connection is being established, the Connection Name field in this menu will show SA before the name of the connection. When the connection is successful, the SA will change to the yellow key symbol.
Reference Manual for the ADSL Modem Wireless Router DG834GSP B-30 NETGEAR VPN Configuration v1.0, June 2007 2. T o view the VPN tunnels status, click the VPN S tatus link on the right side of the main menu.
Reference Manual for the ADSL Modem Wireless Router DG834GSP NETGEAR VPN Configuration B-31 v1.0, June 2007.
Reference Manual for the ADSL Modem Wireless Router DG834GSP B-32 NETGEAR VPN Configuration v1.0, June 2007.
デバイスNETGEAR DG834GSPの購入後に(又は購入する前であっても)重要なポイントは、説明書をよく読むことです。その単純な理由はいくつかあります:
NETGEAR DG834GSPをまだ購入していないなら、この製品の基本情報を理解する良い機会です。まずは上にある説明書の最初のページをご覧ください。そこにはNETGEAR DG834GSPの技術情報の概要が記載されているはずです。デバイスがあなたのニーズを満たすかどうかは、ここで確認しましょう。NETGEAR DG834GSPの取扱説明書の次のページをよく読むことにより、製品の全機能やその取り扱いに関する情報を知ることができます。NETGEAR DG834GSPで得られた情報は、きっとあなたの購入の決断を手助けしてくれることでしょう。
NETGEAR DG834GSPを既にお持ちだが、まだ読んでいない場合は、上記の理由によりそれを行うべきです。そうすることにより機能を適切に使用しているか、又はNETGEAR DG834GSPの不適切な取り扱いによりその寿命を短くする危険を犯していないかどうかを知ることができます。
ですが、ユーザガイドが果たす重要な役割の一つは、NETGEAR DG834GSPに関する問題の解決を支援することです。そこにはほとんどの場合、トラブルシューティング、すなわちNETGEAR DG834GSPデバイスで最もよく起こりうる故障・不良とそれらの対処法についてのアドバイスを見つけることができるはずです。たとえ問題を解決できなかった場合でも、説明書にはカスタマー・サービスセンター又は最寄りのサービスセンターへの問い合わせ先等、次の対処法についての指示があるはずです。