- 1.Èç¹û±£Õ϶¯Ì¬ÓòÃû·þÎñµÄÕý³£Ê¹Óã¿
-
-
- ´ð°¸£º
- µ±Óû§¾¹ýÐÞ¸ÄDNSµÄÉèÖúÍÁªÏµ·þÎñ¹©Ó¦ÉÌÈÔÈ»²»Äܽâ¾ö¶¯Ì¬ÓòÃûµÄ½âÊÍÎÊÌâµÄʱºò£¬ÎÒÃÇÖ£Öؽ¨ÒéÓû§Ê¹ÓÃÆäËü¶¯Ì¬ÓòÃû·þÎñ¹©Ó¦ÉÌÌṩµÄ·þÎñ×÷˫ϵͳ±¸·Ý¡£ÔÚ´ËÎÒÃÇÍƼöÈý¼Ò±È½ÏÎȶ¨µÄ¶¯Ì¬ÓòÃû·þÎñ¹©Ó¦ÉÌ£º
¹©Ó¦ÉÌ
¹Ù·½ÍøÕ¾
ËùÔÚµØÇø
°ó¶¨ÓòÃû
ÊÕ·Ñ·½Ê½
www.88ip.com
Öйú¹ã¶«ÉîÛÚ
Name.88ip.cn
600Ôª/Äê
Ï£ÍøÍøÂç
www.3322.org
Öйú½ËÕ³£ÖÝ
Name.3322.net
Ãâ·Ñ
ÍøÓò¿Æ¼¼£¨»¨Éú¿ÇϵÁУ©
www.oray.net
Öйú¹ã¶«¹ãÖÝ
Name.vicp.net
Ãâ·Ñ
ÎÒÃÇÖ»Òªµ½ÆäÖÐÒ»¸öÍøÕ¾×¢²áÆäºÏ·¨µÄÓû§¿ÚÁʹÓÃÊշѵıÈÃâ·ÑµÄÎȶ¨£©£¬²¢ÏÂÔظù©É̶¯Ì¬ÓòÃû·þÎñ¿Í»§¶ËÈí¼þ°²×°µ½¹«Ë¾ÄÚ²¿ÍøÂçÀïµÄһ̨¿ÉÒÔ·ÃÎÊ»¥ÁªÍøµÄµçÄÔÉÏÃæ¼´¿ÉÒÔʹÓã¬Í¬Ê±ÎÒÃÇÔÚÑ¡ÔñÈí¼þ°²×°µÄµçÄÔµÄʱºòÓ¦¸ÃÑ¡ÔñÄÇЩÐÔÄÜÎȶ¨ºÍÐèÒª³¤Ê±¼ä¿ªÆôµÄµçÄÔÖ÷»úÒÔ±£Ö¤·þÎñµÄÕý³£Ê¹Óá£ÈçÏÂͼ£º
ͼ¾Å£ºµÚÈý·½¶¯Ì¬ÓòÃû·þÎñµÄÓ¦ÓÃ
- ´ËFAQ¶ÔÄãÓаïÖúÂð£¿[ ÊÇ | ·ñ ] | ÊÕ²Ø | À´Ô´£ºMyprice¼Û¸ñÍø
- 2.NETGEAR VPN ·À»ðǽ²úÆ·
-
-
- ´ð°¸£º
-
È«Çò³É³¤ÐÍÉÌÓÃÍøÂçר¼ÒÓëÎÞÏßÍøÂçµÄÏÈ·æÃÀ¹úÍø¼þ¹«Ë¾£¨NETGEAR£©Ëù·¢²¼µÄËùÓÐVPN ·À»ðǽϵÁвúÆ·£¨°üÀ¨FVS318£¬ FVS338,FVS328£¬FVL328£¬FVS338£¬FVX538,FVM318,FWAG114P£©¶¼Ö§³Ö¶¯Ì¬ÓòÃû½âÊÍ·þÎñ£¬ÒÔ·½±ãÓû§ÔÚʹÓö¯Ì¬µÄIPµØÖ·½ÓÈ뻥ÁªÍøʱ¿ÉÒÔ·½±ã½¨Á¢ÊôÓÚ×Ô¼ºµÄÐéÄâרÓÃÍøÂ磨VPN£©¡£ÏÖÔÚÒÔFVL328ΪÀý×Ó£¬×÷Ò»¸ö¼òµ¥µÄ½éÉÜ£¬ÔÚFVL328µÄÅäÖÃÒ³ÃæÀïÃ棨F/W2.003£©£¬µã»÷×ó±ß¹¤¾ß²Ëµ¥ÀïµÄDynamicDnsÑ¡ÏÈçÏÂͼ£º
ͼһ£ºNetgear·À»ðǽ¶¯Ì¬ÓòÃûÉèÖÃ
ÎÒÃÇÌṩ¶¯Ì¬ÓòÃû·þÎñµÄ¹©Ó¦ÉÌÓÐÈý¼Ò£¬¾ßÌåµÄÇé¿öÈçÏÂ±í£º
¹©Ó¦ÉÌ
¹Ù·½ÍøÕ¾
ËùÔÚµØÇø
°ó¶¨ÓòÃû
ÊÕ·Ñ·½Ê½
www.dyndns.org ÃÀ¹úк±²¼Ê²¶û Name.dyndns.org Ãâ·Ñ Tzolkin Corporation Netgear.tzo.com ÃÀ¹úÂéÊ¡ Name.tzo.com xxx.name.com $24.95/Äê
$59.95/ÄêÍøÓò¿Æ¼¼£¨ngDDns/OrayDns£© www..oray.net Öйú¹ãÖÝ Name.ng.iego.net Ãâ·Ñ ¶þ£®ÉèÖÃÏê½â
¿É¼û£¬ÔÚµÚÒ»½ÚÖУ¬´ÓÈý¸öÌṩ¶¯Ì¬ÓòÃû·þÎñµÄ¹©Ó¦É̵ĵØÀíλÖÃÀ´Ëµ£¬ÔÚ¹úÄÚʹÓõķÀ»ðǽÉ豸×îºÃ²ÉÓÃÍøÓò¿Æ¼¼ÌṩµÄ¶¯Ì¬ÓòÃû·þÎñ.ÒÔϾÍÍøÓò¿Æ¼¼ÌṩµÄ¶¯Ì¬ÓòÃû·þÎñ¸ø³öÏêϸµÄÅäÖ÷½·¨¹©Óû§²Î¿¼£º
- ÔÚ¹¤¾ßÀ¸ÀïµãÑ¡Dynamic Dns,½øÐж¯Ì¬ÓòÃûµÄÅäÖã¬Èçͼ£º
ͼ¶þ£ºFVS318 Dunamic Dns ÉèÖÃ
2£®µãÑ¡Oray.net,Õâʱϵͳ»áÌáʾÄãÊäÈëÕùÈ¡µÄDNS ÓòÃûºÍÓû§ÃûÃÜÂëµÈµÇ½ÐÅÏ¢¡£
ͼÈý£ºFVS318 Dunamic Dns ÉèÖÃ
-
µã»÷Oray.netÓұߵÄÁ¬½Ó£¬½«Òýµ¼Óû§½øÈëÍøÓò¶¯Ì¬ÓòÃûµÄ×¢²áϵͳ£¬ÔÚÕâÀïÄã¿ÉÒÔÉêÇëÒ»¸öÃâ·ÑµÄ£¬Î¨Ò»µÄ¶¯Ì¬ÓòÃû£¬Èçͼ£º
ͼËÄ£ºFVS318 Dunamic Dns ÉèÖÃ
-
µã»÷×¢²á¿ªÊ¼ÉêÇë
ͼÎ壺FVS318 Dunamic Dns ÉèÖÃ
-
»Øµ½FVS318µÄÅäÖÃÒ³Ã棬ÔÚDDNSÑ¡ÏîÀÏÈÑ¡ÖÐÊʵ±µÄ·þÎñÌṩÉÌ£¬ÔÚÖйú´ó½ÎÒÃÇÓ¦¸ÃÑ¡ÔñOray.net£¨ÍøÓò¿Æ¼¼£©£¬È»ºóÔÚÏàÓ¦µÄÐÅÏ¢À¸Ä¿ÀïÌîÈëÏàÓ¦µÄ×¢²áÐÅÏ¢¼´¿É¡£ÈçÏÂͼ£ºÔÚÎÒÃǵÄÀý×ÓÀÎÒÃÇΪվµãAÉêÇëÁË£¬ÃûΪNetgear-a.ng.iego.netµÄ¶¯Ì¬ÓòÃû¡£
ͼÁù£ºFVS318 Dunamic Dns ÉèÖÃ
Èý£®µ±ÄÚÖõĶ¯Ì¬ÓòÃûʧЧʱµÄÓ¦±ä°ì·¨
ÉùÃ÷£ºÃÀ¹úÍø¼þ¹«Ë¾²¢²»±£ÕÏÔÚÆä·À»ðǽÌṩµÄ¶¯Ì¬ÓòÃû·þÎñÖÊÁ¿£¬¶¯Ì¬ÓòÃûµÄ·þÎñÖÊÁ¿Ó¦¸ÃÒÔÌṩ¸Ã¶¯Ì¬ÓòÃû·þÎñµÄ¹©Ó¦É̵ķþÎñ³ÐŵΪ²ÎÕÕ¡£
´ÓÒÔÉÏÉùÃ÷ÎÒÃÇ¿ÉÒÔÁ˽⵽£¬µ±ÎÒÃÇÔÚNetgearµÄ·À»ðǽ/¿í´ø·ÓÉÆ÷/VPNÉ豸ʱʹÓÃÍøÓò¿Æ¼¼ÌṩµÄÃâ·Ñ¶¯Ì¬ÓòÃû·þÎñµÄʱºò£¬ÎÒÃÇÓ¦¸ÃÒÔÍøÓò¿Æ¼¼¹«²¼µÄ¶¯Ì¬ÓòÃû·þÎñÖÊÁ¿×÷Ϊ²Î¿¼£¬Õë¶Ô×î½üºÜ¶àÓû§·´Ó¦Ê¹ÓÃÍøÓòµÄ¶¯Ì¬ÓòÃû·þÎñʱ³£³£³öÏÖ·´Ó¦»ºÂý£¬ÉõÖÁ¸ù±¾²»ÄÜÕý³£½âÊ͵ÄÎÊÌ⣬ÎÒÃÇ×ܽá³öÒÔÏÂËÄÖÖ¹ÊÕÏÇé¿ö¡£²¢Õë¶ÔÒÔϵÄÇé¿ö£¬ÎÒÃÇÔÚÏÂÎĽ«Ïêϸ¸øÓû§½éÉܹÊÕϵÄÕï¶Ï°ì·¨¼°ÈçºÎ½â¾öÎÊÌâ¡£
1£®µ±µØDNS·þÎñÆ÷µÄÎÊÌâµ¼ÖÂÓû§ÎÞ°ì·¨Á¬½Óµ½¶¯Ì¬ÓòÃû·þÎñÆ÷
2£®¶¯Ì¬ÓòÃû·þÎñÆ÷³öÏÖ¹ÊÕÏ»òÕßÄÚ²¿Î¬»¤µÄʱºò£¬¶¯Ì¬ÓòÃû·þÎñÆ÷ÎÞ·½·¨Ìṩ·þÎñ¡£
3£®¶¯Ì¬ÓòÃû·þÎñÆ÷·±Ã¦£¬ÕýÔÚÅŶӴ¦ÀíµÇ½ÇëÇó
4£®ISPÆÁ±ÎÁËijЩÔø¾·Ç·¨Ê¹Óùý¶¯Ì¬ÓòÃû·þÎñµÄIPµØÖ·¶Î£¬µ¼Ö²¿·ÖÓû§¸ù±¾ÎÞ·¨Ê¹Óá£
- ´ËFAQ¶ÔÄãÓаïÖúÂð£¿[ ÊÇ | ·ñ ] | ÊÕ²Ø | À´Ô´£ºMyprice¼Û¸ñÍø
- 3.ʹÓÃÒ»¶Ë¹Ì¶¨ IP µØÖ·¹¹½¨µã¶Ôµã VPN
-
-
- ´ð°¸£º
-
ÈçÏÂͼ£¬ÖÐÐÄ»ú NETGEAR FVL328 Gateway A µÄÒ»¶ËÁ¬½Óµ½¾ÖÓòÍø£¬ÄÚ²¿ IP Ϊ 192.168.0.1/24.¡£Æä¹ãÓòÍø½Ó¿ÚÁ¬½Óµ½»¥ÁªÍø£¬²¢ÓÉISPÌṩµÄ¹Ì¶¨ IP µØÖ·¼°Íø¹ØºÍ×ÓÍøÑÚÂë¡£·ÖÖ§»ú¹¹ NETGEAR FVS318 Gateway B µÄÒ»¶ËÁ¬½Óµ½¾ÖÓòÍø£¬ÄÚ²¿ IP Ϊ 172.10.10.1/24 £¬Æä¹ãÓòÍø½Ó¿ÚÁ¬½Óµ½»¥ÁªÍø£¬´Ó ISP ´¦¶¯Ì¬»ñµÃIPµØÖ·¡£ÔÚ¸ÃÀý×ÓÖУ¬ÎÒÃÇ¿ÉÒÔÎÞÐèÀí»á·ÖÖ§»ú¹¹µÄ IP µØÖ·¶øͨ¹ýÖÐÐÄ»ú¹¹¹Ì¶¨ IP µÄµØÖ·£¬½¨Á¢·ÖÖ§»ú¹¹ B µ½ÖÐÐÄ»ú¹¹AµÄ VPN Á¬½Ó£¬Ìص㣺¸ÃÅäÖð취µÄÓŵãÊÇÎÞÐèÀí»á·ÖÖ§»ú¹¹µÄ IP µØÖ·£¬´Ó¶øÌá¸ßÁË VPN µÄÁ¬½ÓµÄÎȶ¨ÐÔ£¬ VPN µÄ½¨Á¢²»ÒÀÀµÓÚ DDNS µÄ½âÊͳɹ¦Óë·ñ£»È±µãÊÇ£ºÖ»ÄÜ´Ó·ÖÖ§µãBÖ÷¶¯ÏòÖÐÐĵãA·¢ÆðÁ¬½ÓÇëÇ󣬶øÖÐÐĵãAÔò²»Äܹ»Ö÷¶¯Ïò·ÖÖ§µãB·¢³öÁ¬½ÓÇëÇó¡£
ͼÀýÒ»£ºÒ»¶ËʹÓù̶¨IPµØÖ·µÄVPNÅäÖÃ
¶þ£®ÅäÖû·¾³£º
ÒÔÏÂÒÔÖÐÐĵãʹÓÃFVL328£¬·ÖÖ§µãʹÓÃFVS318£¨ÈçÉÏͼ£©ÎªÀý×ÓÏêϸÃèÊöÖÐÐĵãºÍ·ÖÖ§µãµÄÅäÖð취¡£
VPN ½¨Á¢µÄģʽ
LAN-TO-LAN £¨FVS318¨¤FVS328µÄAggressiveģʽ£©
VPN µÄÀàÐÍ
LAN-t o-LAN »òÊÇ Gateway-to-Gateway
VPN µÄ°²È«ÅäÖÃ
ÀûÓÃIKE½øÐÐÃÜÔ¿½»»»²¢²ÉÓù²ÏíÃÜÔ¿·½Ê½£¨²»ÊÇCAÈÏÖ¤·½Ê½£©½¨Á¢IPSECͨµÀ)
²úÆ·ÐͺźͰ汾ºÅ
Íø¹ØAFVL328
FVL328 Óõİ汾ºÅÐëʹÓà version 2.003
Íø¹ØBFVS318
FVS318 Óõİ汾ºÅÊÇversion 2.4
IP µØÖ·µÄ·½Ê½
Íø¹ØAFVL328
ÓÉISPÌṩµÄ¹Ì¶¨IPµØÖ·¼°Íø¹ØºÍ×ÓÍøÑÚÂë¡£
WAN IP£º61.144.62.250
LAN IP£º192.168.0.1,Netmask £º255.255.255.0Íø¹ØBFVS318
ÓÉISPÌṩµÄ¶¯Ì¬IPµØÖ·¼°Íø¹ØºÍ×ÓÍøÑÚÂ루ÎÞÐèÉêÇ붯̬ÓòÃû£©¡£
WAN IP£º¶¯Ì¬»ñµÃ
LAN IP£º172.10.10.1, Netmask £º255.255.255.0Èý£®ÅäÖÃÏê½â£º
2.1 ¹Ì¶¨µØÖ·µÄÖÐÐÄ»ú¹¹AÅäÖãº
Ê×ÏȵǼµ½ FVL328 µÄ¹ÜÀí½çÃ棺
- ÔÚIEµØÖ·À¸ÉÏÊäÈë,FVL328µÄ³ö³§ÖµÄ¬ÈϵÄIPµØÖ·£ºhttp://192.168.0.1¡£È»ºóϵͳҪҪÇóÄãÊäÈëµÇ½µÄÓû§ÃûºÍÃÜÂë¡£ÓÃĬÈϵÄÓû§Ãû£ºadmin ºÍĬÈϵÄÃÜÂ룺password. µÇ½µ½FVS318¡£ÎÒÃǼٶ¨ÒÑÉ趨ºÃLAN½Ó¿Ú¡¢¹ãÓòÍø½Ó¿ÚµÄIPµØÖ·ºÍ×ÓÍøÑÚÂëÒÔ¼°Íø¹Ø¡¢DNS·þÎñÆ÷µÄIPµØÖ·¡£ÈçÏÂͼ£º
ͼÀý¶þ£ºNETGEAR FVL328 v2.003basic ÉèÖÃ
2. Ê×ÏÈÊÇÅäÖÃVPNµÄIKE Policies²ßÂÔÁË£¬Á´½Óµ½ VPN ¹¤¾ßÀ¸, ´ò¿ªÀïÃæµÄµÄIKE Policies ²Ëµ¥. µã»÷ Add¡£ÎÒÃÇ»á¼ûµ½Ð IKE PolicyÅäÖýéÃæÈçÏ£º
ͼÀýÈý£ºNETGEAR FVL328 v2.003IKE Policy ÉèÖÃ
- ÔÚPolicy Name ×Ö¶ÎÖÐÊäÈë²ßÂÔµÄÊôÐÔÃû×Ö. Õâ¸öÃû³Æ²»Ò»¶¨ÒªÓë¶Ô¶ËµÄVPN²úÆ·È¡ÃûÒ»ÑùËüµÄÓÃ;Ö÷ÒªÉÏÓÃÀ´°ïÖú¹ÜÀíIKE²ßÂԵġ£ÔÚÕâ¸öÀý×ÓÖÐÎÒÃÇʹÓá±to318¡±À´×÷Ϊ²ßÂÔÃû³Æ¡£ÔÚ Policy Name¶Ô»°¿òÖÐÊäÈ롱to318¡±
- ´ÓÕâ Direction/Type ÏÂÀ¶Ô»°¿òÖУ¬Ñ¡È¡Both Directions»òÕßResponder¡£
- ´ÓExchange Mode ģʽµÄÏÂÀ²Ëµ¥ÖУ¬Ñ¡ÔñAggressive Mode¡£
- ´Ó Local Identity TypeÏÂÀ¶Ô»°»°¿òÖУ¬Ñ¡Ôñ Fully Qualified Domain Name (ÔÚLocal Identity Data ¶Ô»°¿òÊäÈëÓëFVS318¶ÔÓ¦µÄlocal×÷Ϊһ¸ö±êʶ·û¡£)
- ´ÓRemote Identity Type ÏÂÀ¶Ô»°¿òÖÐ, Ñ¡ÔñFully Qualified Domain Name (ÔÚRemote Identity Data ¶Ô»°¿òÖÐÊäÈëÓëfvs318¶ÔÓ¦µÄremote×÷Ϊһ¸ö±êʶ·û¡£)
- ´Ó¼ÓÃܵÄËã·¨ Encryption Algorithm ÏÂÀ¿òÖÐ, Ñ¡Ôñ3DES¡£
- ´ÓÈÏÖ¤Ëã·¨µÄ Authentication Algorithm ÏÂÀ¶Ô»°¿òÖÐ, Ñ¡ÔñSHA-1¡£ÔÙ°ÑÈÏÖ¤·½·¨ Authentication Method °´Å¥Ñ¡ÉÏ, µã»÷ Pre-shared Key¡£
- ÔÚ Pre-Shared Key field ¶Ô»°¿òÖÐ, ÊäÈë¹²ÏíÃÜÔ¿£¬È硱Netgear2004¡±. Äã±ØÐëÈ·±£Á½¶ËÍø¹ØÉ豸ÓмÓÃÜKEYÊÇÒ»ÖÁµÄ£¨°üÀ¨×ÖĸµÄ´óСд£©¡£ÔÙ´Ó Diffie-Hellman (DH) Group ÏÂÀ¶Ô»°¿òÖÐ, Ñ¡Ôñ Group 1(768 Bit)¡£
- ÔÚ SA Life Time field¶Ô»°¿òÖÐ, ÊäÈë180¡£
- µã»÷ Apply °´Å¥. Õâ¾Í·µ»Øµ½IKE Policies µÄÖ÷²Ëµ¥ÉÏ¡£
ͼÀýËÄ£ºNETGEAR FVL328 v2.003IKE Policy ÉèÖÃ
3.ÔÚ×ó±ßµÄ Settings ͼʾ¹ÜÀí½çÃæÖÐ,´ò¿ªVPN·ÖÀàÀ¸ÖÐÁ´½Ó¾Í¿Éµã»÷VPN Policies£¬ÎÒÃÇÀ´ÉèÖà VPN Policies Ö÷½çÃæµÄÅäÖᣵã»÷ Add Auto Policy µÄ°´Å¥..È»ºóÎÒÃǾͿɿ´µ½ÐµÄÅäÖýçÃæVPN¨CAuto Policy.
ͼÀýÎ壺NETGEAR FVL328 v2.003VPN PolicyÉèÖÃ
- ÊäÈëÒ»¸öͳһµÄ²ßÂÔÃû¡£Õâ¸öÃû³Æ²»Ò»¶¨ÒªÓëÔ¶¶ËµÄVPNÉ豸ȡµÄÃû³ÆÏàͬ¡£ÔÚÕâ¸öÀý×ÓÖÐÎÒÃÇʹÓá±to318¡±À´×÷Ϊ²ßÂÔÃû¡£ÔÚPolicy Name×ֶζԻ°¿òÖÐÊäÈë¡°to318¡±¡£
- ÔÙ´Ó IKE policyÏÂÀ¶Ô»°¿òÖÐ, Ñ¡È¡ÎÒÃÇÏȶ¨ÒåºÃµÄIKE Policy¨C ÕâÀïÊÇ¡±Remote-328¡±×÷ΪIKE Policy.
- ͼÉÏûÓбêÃ÷µÄµØ·½£ºµ±¶Ô¶ËµÄFVS318ʹÓö¯Ì¬ADSLÉÏÍøʱºò£¬IKE Keep AliveÐèҪѡÔñÉÏ£¬ÌîÈë¶Ô·½ FVS318 µÄ LAN ¿Ú IP µØÖ·£º172.10.10.1
- ÔÙ´Ó Remote VPN Endpoint Address Type ÏÂÀ¶Ô»°¿òÖУ¬Ñ¡È¡¡±IP Address¡±¡£
- ÔÚRemote VPN Endpoint Address DateÖÐÊäÈë0.0.0.0×÷ΪԶ¶Ë Gateway BµÄIP Address ¡£
- ĬÈÏÔÚSA Life Time (Seconds) ¶Ô»°¿òÖÐÊäÈë86400¡£
- ĬÈÏÔÚSA Life Time (Kbytes) ¶Ô»°¿òÖÐΪÊäÈë0¡£
- IPSec PFS ¶Ô»°¸´Ñ¡¿ò²»±ØÑ¡ÉÏ¡£.
- ÔÙ´ÓTraffic Selector Local IP ÏÂÀ¿òÖÐÑ¡È¡ Subnet address×÷ΪÅäÖá£.
ÊäÈë±¾µØLAN IPµØÖ·×÷ΪÍø¹ØBµÄI·¶Î§ÔÚ Start IP Address ÌîÉÏ¡£(±¾Àý×ÓÖÐÊÇ£º192.168.0.0),ÊäÈëÍø¹ØBµÄ×ÓÍøÑÚÂë(ÔÚ±¾ÀýÖÐÊÇ£º255.255.255.0) ÔÚ Subnet Mask¶Ô»°¿òÖС£ - ÔÙ´ÓTraffic Selector Remote IPÏÂÀ¶Ô»°¿òÖÐÑ¡È¡Subnet address×÷ΪÅäÖá£
ÊäÈë±¾µØLAN IPµØÖ·×÷ΪÍø¹ØBµÄI·¶Î§ÔÚ Start IP Address ÌîÉÏ¡£(±¾Àý×ÓÖÐÊÇ£º172.10.10.0),ÊäÈëÍø¹ØBµÄ×ÓÍøÑÚÂë(ÔÚ±¾ÀýÖÐÊÇ£º255.255.255.0) ÔÚ Subnet Mask¶Ô»°¿òÖС£
ͼÀýÁù£ºNETGEAR FVL328 v2.003VPN PolicyÉèÖÃ
- ÔÙ´Ó AH Configuration Authentication Algorithm ÏÂÀ¿òÖÐ, Ñ¡ÉÏ MD5.£¬ÔÚ·½¿òÖв»ÄÜÑ¡ÉÏ¡£
- ±ØÐëÑ¡ÉÏEnable EncryptionÔÚ ESP Configuration Enable Encryption µÄ¶Ô»°¿ò¡£.
- ÔÙ´Ó ESP Configuration Encryption Algorithm ÏÂÀ¶Ô»°¿òÖÐÑ¡È¡3DES.
- ±ØÐëÑ¡ÉÏEnable Authentication ÔÚ ESP Configuration Enable Authentication µÄ¶Ô»°¿òÖС£
- ÔÙ´Ó ESP Configuration Authentication Algorithm ÏÂÀ¶Ô»°¿òÖÐÑ¡È¡SHA-1¡£.
- ¿ÉÑ¡ÉÏNETBIOS EnableµÄ¹¦ÄÜÔÚNETBIOS Enable ¸´Ñ¡¿òÉÏ¡£
- µã»÷Apply°´Å¥¡£Äã»á·µ»Øµ½ VPN Policies Ö÷²Ëµ¥µÄ¹¦ÄÜÒ³ÃæÉÏ¡£
ͼÀýÆߣºNETGEAR FVL328 v2.003VPN PolicyÉèÖÃ
2.2 ¶¯Ì¬µØÖ·µÄ·ÖÖ§µãBÅäÖãº
Ê×ÏȵǼµ½FVS318µÄ¹ÜÀí½çÃ棺
1.ÔÚIEµØÖ·À¸ÉÏÊäÈëFVS318µÄ³ö³§ÖµÄ¬ÈϵÄIPµØÖ·£ºhttp://172.10.10.1¡£È»ºóϵͳҪҪÇóÄãÊäÈëµÇ½µÄÓû§ÃûºÍÃÜÂë¡£ÓÃĬÈϵÄÓû§Ãû£ºadminºÍĬÈϵÄÃÜÂ룺password¡£µÇ½µ½FVS318¡£ÎÒÃǼٶ¨ÒÑÉ趨ºÃLAN½Ó¿Ú¡¢¹ãÓòÍø½Ó¿ÚµÄIPµØÖ·ºÍ×ÓÍøÑÚÂëÒÔ¼°Íø¹Ø¡¢DNS·þÎñÆ÷µÄIPµØÖ·¡£ÈçÏÂͼ£º
ͼÀý°Ë£º NETGEAR FVS318 v2.4 BasicÉèÖÃ
2. ÔÚ¹¤¾ßÀ¸×ó±ßµã»÷ VPN Settings. µã»÷µÚÒ»¸öVPNÁ¬½Ó¡£ (×ܹ²¿ÉÒÔÊäÈë°Ë¸öÓÐЧµÄVPNÁ¬½Ó)¡£°´Edit£¨±à¼£©°´Å¥Ò»Ï¡£ÕâÏÂÃæ¾ÍÊÇ VPN Settings ¨C Aggressive Mode µÄÉèÖá£
ͼÀý¾Å£º NETGEAR FVS318 v2.4 VPNÉèÖÃ
- ÔÚConnection Name¿òÖУ¬ÊäÈëÒ»¸öVPNͨµÀÃû³Æ¡£ÀýÈ磺ÎÒÃÇÉèΪ£º¡°to328¡±.
- ÔÚNETGEAR FVS318 Gateway B µÄLocal IPSec IdentifierÖÐÊäÈë±¾µØÉí·ÝÈÏÖ¤±êʶ¡£Õâ¸ö±êʶ±ØÐëºÍ¶Ô¶ËFVL328 IKE PolicyÖеÄRemote IPSec IdentifierÏà¶ÔÓ¦¡£ÔÚÕâ¸öÀý×ÓÖжԶËFVL328 IKE PolicyÖеÄRemote IPSec IdentifierΪremote£¬Òò´Ë£¬FVS318µÄ Local IPSec IdentifierÓ¦¸ÃдÉÏremote.
- ÔÚ Remote IPSec Identifier ÖÐÊäÈëÔ¶¶ËÉí·ÝÈÏÖ¤±íʾ£¬¸Ã±êʶ±ØÐëºÍ¶Ô¶ËFVL328 IKE PolicyÖеÄLocal IPSec IdentifierµÄ±íʾÏàÒ»Ö¡£ÔÚÕâ¸öÀý×ÓÖÐÎÒÃÇÊäÈëlocal×÷Ϊthe remote identifier¡£
- ÔÚ Tunnel can be accessed from ÏÂÀ²Ëµ¥ÖÐÑ¡Ôñ a subnet from local addres¡£.
- ÔÚLocal LAN start IP AddressÊäÈë±¾µØLANËùÔÚÍø¶Î (ÀýÈ磺172.10.10.1»òÕß1972.10.10.0)¡£.
- ÔÚLocal LAN IP Subnetmask µÄ¶Ô»°¿òÖÐÊäÈë×ÓÍøÑÚÂë (ÀýÈ磺255.255.255.0 ) ¡£.
- ´Ó Tunnel can accessµÄÏÂÀ²Ëµ¥ÖÐÑ¡Ôñ a subnet from local address¡£
- ÔÚRemote LAN Start IP AddressµÄ¶Ô»°¿òÖÐÊäÈë¶Ô¶Ë£¨GatewayA£©µÄÄÚÍøµÄËùÔÚµØÖ·¶Î (ÀýÈ磺192.168.0.0) ¡£
- ÔÚRemote LAN IP Subnetmask µÄ¶Ô»°¿òÖÐÊäÈë¾ÖÓòÍøµÄ×ÓÍøÑÚÂë(ÀýÈ磺255.255.255.0) ÔÚ¡£
- ÔÚRemote WAN IP or FQDN µÄ¶Ô»°¿òÖÐÊäÈë¶Ô¶ËFVS318 Gateway AµÄ¹ãÓòÍø½Ó¿ÚµÄIPµØÖ·(ÀýÈ磺61.144.62.250)¡£
- ´Ó Secure Association ÏÂÀ¿òÖÐ, Ñ¡ÔñAggressive Mode¡£
- ÔÚ Perfect Forward Secrecy, Ñ¡ÔñDisable°´Å¤¡£.
- ÔÙ´ÓEncryption Protocol ÏÂÀ¶Ô»°¿ò, Ñ¡Ôñ3DES¼ÓÃÜ·½Ê½¡£.
- ÔÚPreShared Key ¶Ô»°¿òÖÐ ,ÊäÈëͳһµÄ×Ó·û´®¹²ÏíÃÜÔ¿¡£ÔÚÕâ¸öÀý×ÓÖÐÎÒÃÇÊäÈ롱netgear2004¡±. Äã±ØÐëÔڶԶ˵ÄÉ豸ÉÏÊäÈëͬÑùµÄ¹²ÏíÃÜÂë¡£.
- ÔÚ Key Life ¶Ô»°¿ò, ÊäÈë28800 seconds.(³ö³§Ä¬ÈÏÖµ)
- ÔÚIKE Life ¶Ô»°¿òÖÐ, ÊäÈë86400 seconds(³ö³§Ä¬ÈÏÖµ)¡£.
- Èç¹ûÄãÏ£Íû NetBIOSÊý¾ÝÁ÷Á¿´Ó VPNͨµÀÖÐÔËÐУ¬ÔÚÇ°·½·½¿òÖÐÑ¡Ôñ NETBIOS Enable , ÀýÈçÔÊÐíÔÚMicrosoft²Ù×÷ϵͳÖеÄÍøÂçÁÚ¾Ó¿´µ½¶Ô·½µÄ¼ÆËã»ú¾Í±ØÐëÑ¡ÉÏ¡£
- µã»÷Apply °´Å¥ÕâЩËùÓÐÅäÖö¼»á´æ´¢µ½É豸ÖÐ. È»ºó¾Í»á·µ»Øµ½ VPN Settings ÆÁÄ»ÉÏ¡£
ͼÀýÊ®£º NETGEAR FVS318 v2.4 VPNÉèÖÃ
3. »Øµ½VPN SettingsµÄ½çÃæ,×¢Òâ±ØÐëÔÚÄúн¨Á¢µÄÁ¬½ÓÖÐÑ¡ÔñEnableÑ¡Ïî¡£
ËÄ£®²âÊÔ
µ±Gateway AºÍ Gateway BÁ½¶ËµÄVPN´´½¨ºÃÖ®ºó£¬ÔÚ·ÖÖ§µãGatewayBµÄ¾ÖÓòÍøÄÚÈÎһ̨µçÄÔÉÏPINGÖÐÐĶËGatewayAµÄ¾ÖÓòÍøÖ÷»úµØÖ·¡£ÀýÈ磺ping 192.168.0.1 ¨Ct.ÔÚ°ë·ÖÖÓ×óÓÒ»áͨ£¬Ö¤Ã÷ÃÀ¹úÍø¼þ(NETGEAR)ss="style103">VPNͨµÀÒѽ¨Á¢Á¬½Ó¡£ÔÚVPNͨµÀ½¨Á¢ÒÔºó£¬ÖÐÐÄGatewayAÉϵÄÖ÷»ú·½¿ÉÒԺͷÖÖ§ÃÀ¹úÍø¼þ(NETGEAR)le103">GatewayBÉϵÄÖ÷»úͨѶ¡£
- ´ËFAQ¶ÔÄãÓаïÖúÂð£¿[ ÊÇ | ·ñ ] | ÊÕ²Ø | À´Ô´£ºMyprice¼Û¸ñÍø
- 4.ʹÓö¯Ì¬ IP µØÖ·¹¹½¨ FVS318 µã¶Ôµã VPN
-
-
- ´ð°¸£º
-
ÈçÏÂͼ£¬NETGEAR FVS318 Gateway A µÄÒ»¶ËÁ¬½Óµ½¾ÖÓòÍø£¬ÄÚ²¿IPΪ192.168.0.1/24.¡£Æä¹ãÓòÍø½Ó¿ÚÁ¬½Óµ½»¥ÁªÍø£¬×Ô¶¯´Ó¹©Ó¦ÉÌ´¦»ñµÃ¶¯Ì¬µÄIPµØÖ·¡£NETGEAR FVS318 Gateway B µÄÒ»¶ËÁ¬½Óµ½¾ÖÓòÍø£¬ÄÚ²¿IPΪ192.168.0.1/24.¡£Æä¹ãÓòÍø½Ó¿ÚÁ¬½Óµ½»¥ÁªÍø£¬×Ô¶¯´Ó¹©ÉÌ´¦»ñµÃ¶¯Ì¬µÄIPµØÖ·¡£ÒªÊµÏÖÁ½Ì¨FVS318Íø¹ØAºÍÍø¹ØBÖ®¼äµÄ VPN Á¬½Ó¡£
ͼÀýÒ»£º¹Ì¶¨IPµØÖ·µÄ VPN Ó¦ÓÃ
¶þ£®ÅäÖû·¾³£º
VPN ½¨Á¢µÄģʽ LAN-TO-LAN £¨FVS318-TO-FVS318µÄ Aggressiveģʽ£© VPNµÄÀàÐÍ LAN-t o-LAN »òÊÇ Gateway-to-Gateway VPNµÄ°²È«ÅäÖà ÀûÓÃIKE½øÐÐÃÜÔ¿½»»»²¢²ÉÓù²ÏíÃÜÔ¿·½Ê½£¨²»ÊÇÄܹýCAÈÏÖ¤·½Ê½£©½¨Á¢IPSECͨµÀ¡£ ²úÆ·ÐͺźͰ汾ºÅ NETGEAR-Íø¹Ø A
NETGEAR-Íø¹Ø BFVS318 Óõİ汾ºÅÊÇ version 2.4
FVS318 Óõİ汾ºÅÊÇ version 2.4IPµØÖ·µÄ·½Ê½
NETGEAR-Íø¹ØA
NETGEAR-Íø¹Ø BûÓй̶¨µÄIPµØÖ·
ûÓй̶¨µÄIPµØÖ·Èý£®ÅäÖÃÏê½â£º
2.1 Íø¹ØA£ºFVS318µÄÅäÖãº
Ê×ÏȵǼµ½FVS318µÄ¹ÜÀí½çÃ棺
- ÔÚIEµØÖ·À¸ÉÏÊäÈë,FVS318µÄ³ö³§ÖµÄ¬ÈϵÄIPµØÖ·£ºhttp://192.168.0.1¡£È»ºóϵͳҪҪÇóÄãÊäÈëµÇ½µÄÓû§ÃûºÍÃÜÂë¡£ÓÃĬÈϵÄÓû§Ãû£ºadminºÍĬÈϵÄÃÜÂ룺password. µÇ½µ½FVS318¡£ÎÒÃǼٶ¨ÒÑÉ趨ºÃLAN½Ó¿Ú¡¢¹ãÓòÍø½Ó¿ÚµÄIPµØÖ·ºÍ×ÓÍøÑÚÂëÒÔ¼°Íø¹Ø¡¢DNS·þÎñÆ÷µÄIPµØÖ·¡£ÈçÏÂͼ£º
ͼÀý¶þ£ºNETGEAR FVS318 v2.4 VPN ÉèÖÃ
-
ÔÚ¹¤¾ßÀ¸ÀïµãÑ¡Dynamic Dns,½øÐж¯Ì¬ÓòÃûµÄÅäÖã¬Èçͼ£º
ͼÀýÈý£ºDunamic DnsÉèÖÃ
-
µãÑ¡Oray.net,Õâʱϵͳ»áÌáʾÄãÊäÈëµÄDNS ÓòÃûºÍÓû§ÃûÃÜÂëµÈµÇ½ÐÅÏ¢¡£
ͼÀýËÄ£ºDunamic DnsÉèÖÃ
-
µã»÷Oray.netÓұߵÄÁ¬½Ó£¬½«Òýµ¼Óû§½øÈëÍøÓò¶¯Ì¬ÓòÃûµÄ×¢²áϵͳ£¬ÔÚÕâÀïÄã¿ÉÒÔÉêÇëÒ»¸öÃâ·ÑµÄ£¬Î¨Ò»µÄ¶¯Ì¬ÓòÃû£¬Èçͼ£º
ͼÀýÎ壺Dunamic Dns ÉèÖÃ
-
µã»÷×¢²á¿ªÊ¼ÉêÇ룬ÔÚ¸ÃÀý×ÓÖУ¬ÎÒÃÇΪGATEWAY A×¢²áÒ»¸öÃû×ÖΪ£ºnetgear-a.ng.iego.netµÄ¶¯Ì¬ÓòÃû¡£ÈçÏÂͼ£º
ͼÀýÁù£ºDunamic Dns ÉèÖÃ
- ¶¯Ì¬ÓòÃûÉèÖÃÍê±ÏÒÔºó£¬ÔÚ¹¤¾ßÀ¸×ó±ßµã»÷VPN Settings¡£µã»÷µÚÒ»¸öVPNÁ¬½Ó¡£ (×ܹ²¿ÉÒÔÊäÈë°Ë¸öÓÐЧµÄVPNÁ¬½Ó).¡£°´Edit£¨±à¼£©°´Å¥¡£ÈçÏÂͼΪVPN SettingsÀïÃæµÄÅäÖá£
ͼÀýÆߣºNETGEAR FVS318 v2.4VPN Settings (µÚÒ»²¿·Ö)
-
ÔÚConnection Name¿òÖУ¬ÊäÈëÒ»¸öVPNͨµÀÃû³Æ. ÀýÈ磺ÎÒÃÇÉèΪ£º¡°to-Gateway B¡±.
-
ÔÚ NETGEAR FVS318 Gateway AµÄLocal IPSec Identifier ÖÐÊäÈë±¾µØÉí·ÝÈÏÖ¤±êʶ.¡£Õâ¸ö±íʾ±ØÐëºÍ¶Ô¶ËµÄRemote IPSec IdentifierÏà¶ÔÓ¦¡£ÔÚÕâ¸öÀý×ÓÖÐʹÓÃgatewayA×÷Ϊlocal identifier¡£
-
ÔÚRemote IPSec Identifier ÖÐÊäÈëÔ¶¶ËÉí·ÝÈÏÖ¤±íʾ£¬¸Ã±êʶ±ØÐëºÍÔ¶¶ËµÄLocal IPSec IdentifierµÄ±íʾÏàÒ»Ö¡£ÔÚÕâ¸öÀý×ÓÖÐÎÒÃÇÊäÈëgatewayB×÷Ϊthe remote identifier¡£
-
ÔÚTunnel can be accessed fromÏÂÀ²Ëµ¥ÖÐÑ¡Ôña subnet from local addres¡£.
-
ÔÚLocal LAN start IP AddressÊäÈë±¾µØLANËùÔÚÍø¶Î (ÀýÈ磺192.168.0.0)¡£.
-
ÔÚLocal LAN IPSubnetmaskµÄ¶Ô»°¿òÖÐÊäÈë×ÓÍøÑÚÂë (ÀýÈ磺255.255.255.0 ) ¡£.
-
´ÓTunnel can access µÄÏÂÀ²Ëµ¥ÖÐÑ¡Ôña subnet from local address¡£
-
ÔÚRemote LAN Start IP AddressµÄ¶Ô»°¿òÖÐÊäÈë¶Ô¶Ë£¨GatewayB£©µÄÄÚÍøµÄËùÔÚµØÖ·¶Î (ÀýÈ磺172.10.10.0) ÔÚ¡£
-
ÔÚRemote LAN IPSubnetmaskµÄ¶Ô»°¿òÖÐÊäÈë¾ÖÓòÍøµÄ×ÓÍøÑÚÂë(ÀýÈ磺255.255.255.0) ÔÚ¡£
-
ÔÚRemote WAN IP or FQDNµÄ¶Ô»°¿òÖÐÊäÈë¶Ô¶ËFVS318 Gateway BµÄ¶¯Ì¬ÓòÃûµØÖ·(ÀýÈ磺netgear-a.ng.iego.net)¡£
ͼ°Ë£ºNETGEAR FVS318 v2.4 VPN Setting(µÚ¶þ²¿·Ö)
-
´ÓSecure AssociationÏÂÀ¿òÖÐ, Ñ¡ÔñAggressive Mode¡£
-
ÔÚPerfect Forward Secrecy, Ñ¡ÔñDisable°´Å¤¡£.
-
ÔÙ´ÓEncryption ProtocolÏÂÀ¶Ô»°¿ò, Ñ¡ÔñDES¼ÓÃÜ·½Ê½¡£.
-
ÔÚPreShared Key¶Ô»°¿òÖÐ ,ÊäÈëͳһµÄ×Ó·û´®¹²ÏíÃÜÔ¿¡£ÔÚÕâ¸öÀý×ÓÖÐÎÒÃÇÊäÈ롱netgear2004¡±¡£Äú±ØÐëÔڶԶ˵ÄÉ豸ÉÏÊäÈëͬÑùµÄ¹²ÏíÃÜÂë¡£.
-
ÔÚKey Life¶Ô»°¿ò, ÊäÈë28800 seconds.(³ö³§Ä¬ÈÏÖµ)
-
ÔÚIKE Life¶Ô»°¿òÖÐ, ÊäÈë86400 seconds(³ö³§Ä¬ÈÏÖµ)¡£.
-
Èç¹ûÄãÏ£Íû NetBIOSÊý¾ÝÄÜ´ÓVPNͨµÀÖÐͨ¹ý£¬ÔòÔÚÇ°·½·½¿òÖÐÑ¡Ôñ NETBIOS Enable£¬ÀýÈçÔÊÐíÔÚMicrosoft²Ù×÷ϵͳÖеÄÍøÂçÁÚ¾Ó¿´µ½¶Ô·½µÄ¼ÆËã»ú¾Í±ØÐëÑ¡ÉÏ¡£
-
µã»÷Apply°´Å¥£¬ËùÓÐÅäÖö¼»á´æ´¢µ½É豸ÖÐ.¡£È»ºó·µ»Øµ½VPN SettingsÆÁÄ»ÉÏ¡£
ͼÀý¾Å£º NETGEAR FVS318 v2.4 VPN ÉèÖÃÖ®ºóµÄVPN·µ»ØµÄ״̬½éÃæ
-
»Øµ½VPN SettingsµÄ½çÃæÉÏ×¢Òâ±ØÐëÔÚÄúн¨Á¢µÄÁ¬½ÓÖÐÑ¡ÔñEnableÑ¡Ïî¡£.
2.2 Íø¹ØA£ºFVS318µÄÅäÖãº
Ê×ÏȵǼµ½FVS318µÄ¹ÜÀí½çÃ棺
1.ÔÚIEµØÖ·À¸ÉÏÊäÈëFVS318µÄ³ö³§ÖµÄ¬ÈϵÄIPµØÖ·£ºhttp://172.10.10.1¡£È»ºóϵͳҪҪÇóÄãÊäÈëµÇ½µÄÓû§ÃûºÍÃÜÂë¡£ÓÃĬÈϵÄÓû§Ãû£ºadminºÍĬÈϵÄÃÜÂ룺password¡£µÇ½µ½FVS318¡£ÎÒÃǼٶ¨ÒÑÉ趨ºÃLAN½Ó¿Ú¡¢¹ãÓòÍø½Ó¿ÚµÄIPµØÖ·ºÍ×ÓÍøÑÚÂëÒÔ¼°Íø¹Ø¡¢DNS·þÎñÆ÷µÄIPµØÖ·¡£ÈçÏÂͼ£º
ͼÀýÊ®£º NETGEAR FVS318 v2.4 BasicÉèÖÃ
2. Gateway BµÄ¶¯Ì¬ÓòÃûµÄÉèÖÿÉÒԲο¼2.1Õ½Ú
3. ÔÚ¹¤¾ßÀ¸×ó±ßµã»÷ VPN Settings. µã»÷µÚÒ»¸öVPNÁ¬½Ó¡£ (×ܹ²¿ÉÒÔÊäÈë°Ë¸öÓÐЧµÄVPNÁ¬½Ó)¡£°´Edit£¨±à¼£©°´Å¥Ò»Ï¡£ÈëÏÂͼΪVPN SettingÖеÄÉèÖá£
ͼÀýʮһ£º NETGEAR FVS318 v2.4 VPN Settings (µÚÒ»²¿·Ö)
-
ÔÚConnection Name¿òÖУ¬ÊäÈëÒ»¸öVPNͨµÀÃû³Æ¡£ÀýÈ磺ÎÒÃÇÉèΪ£º¡°to-GatewayA¡±.
-
ÔÚNETGEAR FVS318 Gateway BµÄLocal IPSec IdentifierÖÐÊäÈë±¾µØÉí·ÝÈÏÖ¤±êʶ.¡£Õâ¸ö±êʶ±ØÐëºÍ¶Ô¶ËµÄRemote IPSec IdentifierÏà¶ÔÓ¦¡£ÔÚÕâ¸öÀý×ÓÖÐʹÓÃgatewayB×÷Ϊlocal identifier¡£
-
ÔÚRemote IPSec Identifier ÖÐÊäÈëÔ¶¶ËÉí·ÝÈÏÖ¤±íʾ£¬¸Ã±êʶ±ØÐëºÍÔ¶¶ËµÄLocal IPSec IdentifierµÄ±íʾÏàÒ»Ö¡£ÔÚÕâ¸öÀý×ÓÖÐÎÒÃÇÊäÈëgatewayA×÷Ϊthe remote identifier¡£
-
ÔÚTunnel can be accessed fromÏÂÀ²Ëµ¥ÖÐÑ¡Ôña subnet from local addres¡£.
-
ÔÚLocal LAN start IP AddressÊäÈë±¾µØLANËùÔÚÍø¶Î (ÀýÈ磺172.10.10.0)¡£.
-
ÔÚLocal LAN IPSubnetmaskµÄ¶Ô»°¿òÖÐÊäÈë×ÓÍøÑÚÂë (ÀýÈ磺255.255.255.0 ) ¡£.
-
´ÓTunnel can access µÄÏÂÀ²Ëµ¥ÖÐÑ¡Ôña subnet from local address¡£
-
ÔÚRemote LAN Start IP AddressµÄ¶Ô»°¿òÖÐÊäÈë¶Ô¶Ë£¨GatewayA£©µÄÄÚÍøµÄËùÔÚµØÖ·¶Î (ÀýÈ磺192.168.0.0) ÔÚ¡£
-
ÔÚRemote LAN IPSubnetmaskµÄ¶Ô»°¿òÖÐÊäÈë¾ÖÓòÍøµÄ×ÓÍøÑÚÂë(ÀýÈ磺255.255.255.0) ÔÚ¡£
-
ÔÚRemote WAN IP or FQDNµÄ¶Ô»°¿òÖÐÊäÈë¶Ô¶ËFVS318µÄ¶¯Ì¬ÓòÃû(ÀýÈ磺netgear-a.ng.iego.net)¡£
ͼÀýÊ®¶þ£ºNETGEAR FVS318 V2.4 VPN ÉèÖ㨵ڶþ²¿·Ö£©
-
´ÓSecure AssociationÏÂÀ¿òÖÐ, Ñ¡ÔñAggressive Mode¡£.
-
ÔÚPerfect Forward Secrecy, Ñ¡ÔñDisable°´Å¤¡£.
-
ÔÙ´ÓEncryption ProtocolÏÂÀ¶Ô»°¿ò, Ñ¡ÔñDES¼ÓÃÜ·½Ê½¡£.
-
ÔÚPreShared Key¶Ô»°¿òÖÐ ,ÊäÈëͳһµÄ×Ó·û´®¹²ÏíÃÜÔ¿¡£ÔÚÕâ¸öÀý×ÓÖÐÎÒÃÇÊäÈ롱netgear2004¡±.Äã±ØÐëÔڶԶ˵ÄÉ豸ÉÏÊäÈëͬÑùµÄ¹²ÏíÃÜÂë¡£.
-
ÔÚKey Life¶Ô»°¿ò, ÊäÈë28800 seconds.(³ö³§Ä¬ÈÏÖµ)
-
ÔÚIKE Life¶Ô»°¿òÖÐ, ÊäÈë86400 seconds(³ö³§Ä¬ÈÏÖµ)¡£.
-
Èç¹ûÄãÏ£Íû NetBIOSÊý¾ÝÄÜ´ÓVPNͨµÀÖÐͨ¹ý£¬ÔòÔÚÇ°·½·½¿òÖÐÑ¡Ôñ NETBIOS Enable£¬ÀýÈçÔÊÐíÔÚMicrosoft²Ù×÷ϵͳÖеÄÍøÂçÁÚ¾Ó¿´µ½¶Ô·½µÄ¼ÆËã»ú¾Í±ØÐëÑ¡ÉÏ¡£
-
µã»÷Apply°´Å¥ÕâЩËùÓÐÅäÖö¼»á´æ´¢µ½É豸ÖÐ. È»ºó¾Í»á·µ»Øµ½VPN SettingsÆÁÄ»ÉÏ¡£
ͼÀýÊ®Èý£º NETGEAR FVS318 v2.4 VPN ÉèÖÃÖ®ºóµÄVPN·µ»ØµÄ״̬½çÃæ
3. »Øµ½VPN SettingsµÄ½çÃæ,×¢Òâ±ØÐëÔÚÄúн¨Á¢µÄÁ¬½ÓÖÐÑ¡ÔñEnableÑ¡Ïî¡£
ËÄ£®²âÊÔ
µ±Gateway AºÍGateway BÁ½¶ËµÄVPN²ßÂÔ´´½¨ºÃÖ®ºó£¬ÔÚÁ½¶ËµÄ¾ÖÓòÍøÈÎһ̨µçÄÔÉÏPING¶Ô·½µÄ¾ÖÓòÍøÖ÷»úµØÖ·¡£ÀýÈ磺ping 172.10.10.1 ¨Ct.»òPing 192.168.0.1 ¨Ct ÔÚ°ë·ÖÖÓ×óÓÒ»áͨ£¬Ö¤Ã÷VPNͨµÀÒѽ¨Á¢Á¬½Ó¡£
ͼÀýÊ®ËÄ£º²âÊÔVPNͨµÀ
- ´ËFAQ¶ÔÄãÓаïÖúÂð£¿[ ÊÇ | ·ñ ] | ÊÕ²Ø | À´Ô´£ºMyprice¼Û¸ñÍø
- 5.ʹÓù̶¨IPµØÖ·¹¹½¨FVS 318µã¶ÔµãVPN
-
-
- ´ð°¸£º
-
ÈçÏÂͼ£¬NETGEAR FVS318 Gateway A µÄÒ»¶ËÁ¬½Óµ½¾ÖÓòÍø£¬ÄÚ²¿IPΪ192.168.0.1/24.¡£Æä¹ãÓòÍø½Ó¿ÚÁ¬½Óµ½»¥ÁªÍø£¬²¢ÓÉISPÌṩµÄ¹Ì¶¨IPµØÖ·¼°Íø¹ØºÍ×ÓÍøÑÚÂë¡£NETGEAR FVS318 Gateway B µÄÒ»¶ËÁ¬½Óµ½¾ÖÓòÍø£¬ÄÚ²¿IPΪ192.168.0.1/24.¡£Æä¹ãÓòÍø½Ó¿ÚÁ¬½Óµ½»¥ÁªÍø£¬²¢ÓÉISPÌṩµÄ¹Ì¶¨IPµØÖ·¼°Íø¹ØºÍ×ÓÍøÑÚÂ롣ҪʵÏÖÁ½Ì¨FVS318Íø¹ØAºÍÍø¹ØBÖ®¼äµÄVPNÁ¬½Ó¡£
ͼÀýÒ»£º¹Ì¶¨IPµØÖ·µÄVPNÓ¦ÓÃ
¶þ£®ÅäÖû·¾³£º
VPN ½¨Á¢µÄģʽ£º
LAN-TO-LAN £¨FVS318-TO-FVS318µÄMAINģʽ£©
VPNµÄÀàÐÍ
LAN-t o-LAN »òÊÇ Gateway-to-Gateway
VPNµÄ°²È«ÅäÖÃ:
ÀûÓÃIKE½øÐÐÃÜÔ¿½»»»²¢²ÉÓù²ÏíÃÜÔ¿·½Ê½£¨²»ÊÇÄܹýCAÈÏÖ¤·½Ê½£©½¨Á¢IPSECͨµÀ¡£
²úÆ·ÐͺźͰ汾ºÅ:
NETGEAR-Íø¹Ø A
FVS318 Óõİ汾ºÅÊÇ version 2.4
NETGEAR-Íø¹Ø B
FVS318 Óõİ汾ºÅÊÇversion 2.4
IPµØÖ·µÄ·½Ê½£º
NETGEAR-Íø¹ØA
ÓÉISPÌṩµÄ¹Ì¶¨IPµØÖ·¼°Íø¹ØºÍ×ÓÍøÑÚÂë¡£
NETGEAR-Íø¹Ø B
ÓÉISPÌṩµÄ¹Ì¶¨IPµØÖ·¼°Íø¹ØºÍ×ÓÍøÑÚÂë¡£
Èý£®ÅäÖÃÏê½â£º
2.1 ¹Ì¶¨µØÖ·µÄÍø¹ØAÅäÖãº
Ê×ÏȵǼµ½FVS318µÄ¹ÜÀí½çÃ棺
- ÔÚIEµØÖ·À¸ÉÏÊäÈë,FVS318µÄ³ö³§ÖµÄ¬ÈϵÄIPµØÖ·£ºhttp://192.168.0.1¡£È»ºóϵͳҪҪÇóÄãÊäÈëµÇ½µÄÓû§ÃûºÍÃÜÂë¡£ÓÃĬÈϵÄÓû§Ãû£ºadminºÍĬÈϵÄÃÜÂ룺password. µÇ½µ½FVS318¡£ÎÒÃǼٶ¨ÒÑÉ趨ºÃLAN½Ó¿Ú¡¢¹ãÓòÍø½Ó¿ÚµÄIPµØÖ·ºÍ×ÓÍøÑÚÂëÒÔ¼°Íø¹Ø¡¢DNS·þÎñÆ÷µÄIPµØÖ·¡£ÈçÏÂͼ
ͼÀý¶þ£ºNETGEAR FVS318 v2.4 VPN ÉèÖÃ
- ÔÚ¹¤¾ßÀ¸×ó±ßµã»÷ VPN Settings. µã»÷µÚÒ»¸öVPNÁ¬½Ó¡£ (×ܹ²¿ÉÒÔÊäÈë°Ë¸öÓÐЧµÄVPNÁ¬½Ó).¡£°´Edit£¨±à¼£©°´Å¥¡£ÕâÏÂÃæ¾ÍÊÇVPN SettingsÀïÃæµÄÅäÖá£
ͼÈý£ºNETGEAR FVS318 v2.4VPN Settings (µÚÒ»²¿·Ö)
- ÔÚConnection Name¿òÖУ¬ÊäÈëÒ»¸öVPNͨµÀÃû³Æ. ÀýÈ磺ÎÒÃÇÉèΪ£º¡°to-Gateway B¡±.
- ÔÚ NETGEAR FVS318 Gateway AµÄLocal IPSec Identifier ÖÐÊäÈë±¾µØÉí·ÝÈÏÖ¤±êʶ.¡£Õâ¸ö±íʾ±ØÐëºÍ¶Ô¶ËµÄRemote IPSec IdentifierÏà¶ÔÓ¦¡£ÔÚÕâ¸öÀý×ÓÖÐʹÓÃ0.0.0.0×÷Ϊlocal identifier¡£
- ÔÚRemote IPSec Identifier ÖÐÊäÈëÔ¶¶ËÉí·ÝÈÏÖ¤±íʾ£¬¸Ã±êʶ±ØÐëºÍÔ¶¶ËµÄLocal IPSec IdentifierµÄ±íʾÏàÒ»Ö¡£ÔÚÕâ¸öÀý×ÓÖÐÎÒÃÇÊäÈë0.0.0.0×÷Ϊthe remote identifier¡£
- ÔÚTunnel can be accessed fromÏÂÀ²Ëµ¥ÖÐÑ¡Ôña subnet from local addres¡£.
- ÔÚLocal LAN start IP AddressÊäÈë±¾µØLANËùÔÚÍø¶Î (ÀýÈ磺192.168.0.0)¡£.
- ÔÚLocal LAN IPSubnetmaskµÄ¶Ô»°¿òÖÐÊäÈë×ÓÍøÑÚÂë (ÀýÈ磺255.255.255.0 ) ¡£.
- ´ÓTunnel can access µÄÏÂÀ²Ëµ¥ÖÐÑ¡Ôña subnet from local address¡£
- ÔÚRemote LAN Start IP AddressµÄ¶Ô»°¿òÖÐÊäÈë¶Ô¶Ë£¨GatewayB£©µÄÄÚÍøµÄËùÔÚµØÖ·¶Î (ÀýÈ磺172.10.10.0) ÔÚ¡£
- ÔÚRemote LAN IPSubnetmaskµÄ¶Ô»°¿òÖÐÊäÈë¾ÖÓòÍøµÄ×ÓÍøÑÚÂë(ÀýÈ磺255.255.255.0) ÔÚ¡£
- ÔÚRemote WAN IP or FQDNµÄ¶Ô»°¿òÖÐÊäÈë¶Ô¶ËFVS318 Gateway BµÄ¹ãÓòÍø½Ó¿ÚµÄIPµØÖ·(ÀýÈ磺218.18.10.18)¡£
ͼËÄ£ºNETGEAR FVS318 v2.4 VPN Setting(µÚ¶þ²¿·Ö)
- ´ÓSecure AssociationÏÂÀ¿òÖÐ, Ñ¡ÔñMain Mode.
- ÔÚPerfect Forward Secrecy, Ñ¡ÔñEnabled°´Å¤¡£.
- ÔÙ´ÓEncryption ProtocolÏÂÀ¶Ô»°¿ò, Ñ¡Ôñ3DES¼ÓÃÜ·½Ê½¡£.
- ÔÚPreShared Key¶Ô»°¿òÖÐ ,ÊäÈëͳһµÄ×Ó·û´®¹²ÏíÃÜÔ¿¡£ÔÚÕâ¸öÀý×ÓÖÐÎÒÃÇÊäÈ롱netgear2004¡±.Äã±ØÐëÔڶԶ˵ÄÉ豸ÉÏÊäÈëͬÑùµÄ¹²ÏíÃÜÂë¡£.
- ÔÚKey Life¶Ô»°¿ò, ÊäÈë28800 seconds.(³ö³§Ä¬ÈÏÖµ)
- ÔÚIKE Life¶Ô»°¿òÖÐ, ÊäÈë86400 seconds(³ö³§Ä¬ÈÏÖµ)¡£.
- Èç¹ûÄãÏ£Íû NetBIOSÊý¾ÝÁ÷Á¿´Ó VPNͨµÀÖÐÔËÐУ¬ÔÚÇ°·½·½¿òÖÐÑ¡Ôñ NETBIOS Enable£¬ÀýÈçÔÊÐíÔÚMicrosoft ϵͳÖеÄÍøÂçÁÚ¾Ó¿´µ½¶Ô·½µÄ¼ÆËã»ú¾Í±ØÐëÑ¡ÉÏ¡£
- µã»÷Apply°´Å¥£¬ËùÓÐÅäÖö¼»á´æ´¢µ½É豸ÖÐ.¡£È»ºó·µ»Øµ½VPN SettingsÆÁÄ»ÉÏ¡£
ͼÎ壺 NETGEAR FVS318 v2.4 VPN ÉèÖÃÖ®ºóµÄVPN·µ»ØµÄ״̬½éÃæ¡£
»Øµ½VPN SettingsµÄ½çÃæÉÏ×¢Òâ±ØÐëÔÚÄúн¨Á¢µÄÁ¬½ÓÖÐÑ¡ÔñEnableÑ¡Ïî¡£
2.2 ¹Ì¶¨µØÖ·µÄÍø¹ØBÅäÖãº
Ê×ÏȵǼµ½FVS318µÄ¹ÜÀí½çÃ棺
1.ÔÚIEµØÖ·À¸ÉÏÊäÈëFVS318µÄ³ö³§ÖµÄ¬ÈϵÄIPµØÖ·£ºhttp://172.10.10.1¡£È»ºóϵͳҪҪÇóÄãÊäÈëµÇ½µÄÓû§ÃûºÍÃÜÂë¡£ÓÃĬÈϵÄÓû§Ãû£ºadminºÍĬÈϵÄÃÜÂ룺password¡£µÇ½µ½FVS318¡£ÎÒÃǼٶ¨ÒÑÉ趨ºÃLAN½Ó¿Ú¡¢¹ãÓòÍø½Ó¿ÚµÄIPµØÖ·ºÍ×ÓÍøÑÚÂëÒÔ¼°Íø¹Ø¡¢DNS·þÎñÆ÷µÄIPµØÖ·¡£ÈçÏÂͼ£º
ͼÁù£º NETGEAR FVS318 v2.4 VPN ÉèÖÃ
2. ÔÚ¹¤¾ßÀ¸×ó±ßµã»÷ VPN Settings. µã»÷µÚÒ»¸öVPNÁ¬½Ó¡£ (×ܹ²¿ÉÒÔÊäÈë°Ë¸öÓÐЧµÄVPNÁ¬½Ó)¡£°´Edit£¨±à¼£©°´Å¥Ò»Ï¡£ÕâÏÂÃæ¾ÍÊÇ VPN Settings ¨C MAIN Mode µÄÉèÖá£
ͼÆߣº NETGEAR FVS318 v2.4 VPN Settings (µÚÒ»²¿·Ö) ¨C MAIN Mode
- ÔÚConnection Name¿òÖУ¬ÊäÈëÒ»¸öVPNͨµÀÃû³Æ¡£ÀýÈ磺ÎÒÃÇÉèΪ£º¡°to-Gateway A¡±.
- ÔÚNETGEAR FVS318 Gateway BµÄLocal IPSec IdentifierÖÐÊäÈë±¾µØÉí·ÝÈÏÖ¤±êʶ.¡£Õâ¸ö±êʶ±ØÐëºÍ¶Ô¶ËµÄRemote IPSec IdentifierÏà¶ÔÓ¦¡£ÔÚÕâ¸öÀý×ÓÖÐʹÓÃ0.0.0.0×÷Ϊlocal identifier¡£
- ÔÚRemote IPSec Identifier ÖÐÊäÈëÔ¶¶ËÉí·ÝÈÏÖ¤±íʾ£¬¸Ã±êʶ±ØÐëºÍÔ¶¶ËµÄLocal IPSec IdentifierµÄ±íʾÏàÒ»Ö¡£ÔÚÕâ¸öÀý×ÓÖÐÎÒÃÇÊäÈë0.0.0.0×÷Ϊthe remote identifier¡£
- ÔÚTunnel can be accessed fromÏÂÀ²Ëµ¥ÖÐÑ¡Ôña subnet from local addres¡£.
- ÔÚLocal LAN start IP AddressÊäÈë±¾µØLANËùÔÚÍø¶Î (ÀýÈ磺172.10.10.0)¡£.
- ÔÚLocal LAN IPSubnetmaskµÄ¶Ô»°¿òÖÐÊäÈë×ÓÍøÑÚÂë (ÀýÈ磺255.255.255.0 ) ¡£.
- ´ÓTunnel can access µÄÏÂÀ²Ëµ¥ÖÐÑ¡Ôña subnet from local address¡£
- ÔÚRemote LAN Start IP AddressµÄ¶Ô»°¿òÖÐÊäÈë¶Ô¶Ë£¨GatewayA£©µÄÄÚÍøµÄËùÔÚµØÖ·¶Î (ÀýÈ磺192.168.0.0) ÔÚ¡£
- ÔÚRemote LAN IPSubnetmaskµÄ¶Ô»°¿òÖÐÊäÈë¾ÖÓòÍøµÄ×ÓÍøÑÚÂë(ÀýÈ磺255.255.255.0) ÔÚ¡£
- ÔÚRemote WAN IP or FQDNµÄ¶Ô»°¿òÖÐÊäÈë¶Ô¶ËFVS318 Gateway AµÄ¹ãÓòÍø½Ó¿ÚµÄIPµØÖ·(ÀýÈ磺61.144.62.250)¡£
ͼ°Ë£ºNETGEAR FVS318 V2.4 VPN ÉèÖÃģʽ ¨C MAIN Mode
- ´ÓSecure AssociationÏÂÀ¿òÖÐ, Ñ¡ÔñMain Mode.
- ÔÚPerfect Forward Secrecy, Ñ¡ÔñEnabled°´Å¤¡£.
- ÔÙ´ÓEncryption ProtocolÏÂÀ¶Ô»°¿ò, Ñ¡Ôñ3DES¼ÓÃÜ·½Ê½¡£.
- ÔÚPreShared Key¶Ô»°¿òÖÐ ,ÊäÈëͳһµÄ×Ó·û´®¹²ÏíÃÜÔ¿¡£ÔÚÕâ¸öÀý×ÓÖÐÎÒÃÇÊäÈ롱netgear2004¡±.Äã±ØÐëÔڶԶ˵ÄÉ豸ÉÏÊäÈëͬÑùµÄ¹²ÏíÃÜÂë¡£.
- ÔÚKey Life¶Ô»°¿ò, ÊäÈë28800 seconds.(³ö³§Ä¬ÈÏÖµ)
- ÔÚIKE Life¶Ô»°¿òÖÐ, ÊäÈë86400 seconds(³ö³§Ä¬ÈÏÖµ)¡£.
- Èç¹ûÄãÏ£Íû NetBIOSÊý¾ÝÁ÷Á¿´Ó VPNͨµÀÖÐÔËÐУ¬ÔÚÇ°·½·½¿òÖÐÑ¡Ôñ NETBIOS Enable£¬ÐÐ, ÀýÈçÔÊÐíÔÚMicrosoft²Ù×÷ϵͳÖеÄÍøÂçÁÚ¾Ó¿´µ½¶Ô·½µÄ¼ÆËã»ú¾Í±ØÐëÑ¡ÉÏ¡£
- µã»÷Apply°´Å¥ÕâЩËùÓÐÅäÖö¼»á´æ´¢µ½É豸ÖÐ. È»ºó¾Í»á·µ»Øµ½VPN SettingsÆÁÄ»ÉÏ¡£
ͼ¾Å£º NETGEAR FVS318 v2.4 VPN ÉèÖÃÖ®ºóµÄVPN·µ»ØµÄ״̬½çÃæ
3. »Øµ½VPN SettingsµÄ½çÃæ,×¢Òâ±ØÐëÔÚÄúн¨Á¢µÄÁ¬½ÓÖÐÑ¡ÔñEnableÑ¡Ïî¡£
ËÄ£®²âÊÔ
µ±Gateway AºÍ Gateway BÁ½¶ËµÄVPN´´½¨ºÃÖ®ºó£¬ÔÚÁ½¶ËµÄ¾ÖÓòÍøÈÎһ̨µçÄÔÉÏPING¶Ô·½µÄ¾ÖÓòÍøÖ÷»úµØÖ·¡£ÀýÈ磺ping 172.10.10.1 ¨Ct.»òPing 192.168.0.1 ¨Ct ÔÚ°ë·ÖÖÓ×óÓÒ»áͨ£¬Ö¤Ã÷VPNͨµÀÒѽ¨Á¢Á¬½Ó¡£
- ÔÚIEµØÖ·À¸ÉÏÊäÈë,FVS318µÄ³ö³§ÖµÄ¬ÈϵÄIPµØÖ·£ºhttp://192.168.0.1¡£È»ºóϵͳҪҪÇóÄãÊäÈëµÇ½µÄÓû§ÃûºÍÃÜÂë¡£ÓÃĬÈϵÄÓû§Ãû£ºadminºÍĬÈϵÄÃÜÂ룺password. µÇ½µ½FVS318¡£ÎÒÃǼٶ¨ÒÑÉ趨ºÃLAN½Ó¿Ú¡¢¹ãÓòÍø½Ó¿ÚµÄIPµØÖ·ºÍ×ÓÍøÑÚÂëÒÔ¼°Íø¹Ø¡¢DNS·þÎñÆ÷µÄIPµØÖ·¡£ÈçÏÂͼ
- ´ËFAQ¶ÔÄãÓаïÖúÂð£¿[ ÊÇ | ·ñ ] | ÊÕ²Ø | À´Ô´£ºMyprice¼Û¸ñÍø
- 6.ÈçºÎ½¨Á¢ FVS318v3 ºÍ FVS318v1/v2 µÄ VPN
-
-
- ´ð°¸£º
- ÎĵµµÄÊÊÓ÷¶Î§
FVS318v3 ¨C ²úÆ·ÐòÁкŵÄÇ°ÈýλΪ FVS9, ¹Ì¼þ°æ±¾3.0.20¡£
FVS318v2 ¨C ²úÆ·ÐòÁкŵÄÇ°ÈýλΪ FVS1, ¹Ì¼þ°æ±¾v2.4¡£
FVS318v1 ¨C ²úÆ·ÐòÁкŵÄÇ°ÈýλΪ FVS8, ¹Ì¼þ°æ±¾v2.4¡£ÒÔÏÂÊÇÒ»¸öÁ½¶ËΪ¹Ì¶¨IPµØÖ·µÄ FVS318v3 ºÍ FVS318v1/v2 ¹¹½¨VPNµÄÅäÖÃÀý×Ó¡£
FVS318v3 µÄÅäÖÃ
ÔÚFVS318v3µÄÅäÖÃÒ³ÃæÉÏ£¬µã»÷×ó±ßVPN²Ëµ¥ÏµÄIKE PolicyÏîÄ¿¡£³öÏÖÈçÏÂÅäÖÃÒ³Ãæ¡£
µã»÷Add°´Å¥´´½¨Ò»¸öеÄIKE²ßÂÔ¡£
-
ÔÚPolicy Name×Ö¶ÎÖÐÊäÈëIKE²ßÂÔµÄÃû×Ö¡£Õâ¸öÃû³Æ²»Ò»¶¨ÒªÓë¶Ô¶ËµÄVPN²úÆ·È¡ÃûÒ»Ñù¡£ËüÖ÷ÒªÓÃÀ´°ïÖú¹ÜÀíIKE²ßÂԵġ£ÔÚÕâ¸öÀý×ÓÖÐÎÒÃÇʹÓá±toFVS318V1¡±À´×÷Ϊ²ßÂÔÃû³Æ¡£
-
ÔÚDirection/Type ÏÂÀ¶Ô»°¿òÖУ¬Ñ¡È¡ Both Directions¡£
-
ÔÚExchange Mode ģʽµÄÏÂÀ²Ëµ¥ÖУ¬Ñ¡ÔñMainMode¡£
-
ÔÚ Local Identity TypeÏÂÀ¶Ô»°»°¿òÖУ¬Ñ¡Ôñ WAN IP Address(ÔÚLocal Identity Data ¶Ô»°¿òÊäÈëÉ豸»á×Ô¶¯ÕÒµ½¹ãÓòÍø¿ÚµÄIPµØÖ·×÷Ϊһ¸ö±êʶ·û)¡£
-
´ÓRemote Identity Type ÏÂÀ¶Ô»°¿òÖÐ, Ñ¡Ôñ Remote WAN IP (ÔÚRemote Identity Data ¶Ô»°¿òÖлá×Ô¶¯ÕÒµ½Ô¶¶ËÉ豸µÄ¹ãÓòÍø¶Ë¿ÚµÄIPµØÖ·×÷Ϊһ¸ö±êʶ·û)¡£
-
ÔÚ¼ÓÃܵÄËã·¨ Encryption Algorithm ÏÂÀ¿òÖÐ, Ñ¡Ôñ3DES¡£
-
ÔÚÈÏÖ¤Ëã·¨µÄ Authentication Algorithm ÏÂÀ¶Ô»°¿òÖÐ, Ñ¡Ôñ SHA-1¡£
-
ÔÙ°ÑÈÏÖ¤·½·¨ Authentication Method °´Å¥Ñ¡ÉÏ, µã»÷ Pre-shared Key¡£
-
ÔÚ Pre-Shared Key field¶Ô»°¿òÖÐ, ÊäÈ롱Netgear2004¡±. Äã±ØÐëÈ·±£Á½¶ËÍø¹ØÉ豸µÄ¼ÓÃÜÔ¿³×ÊÇÒ»Öµģ¨°üÀ¨×ÖĸµÄ´óСд£©¡£
-
ÔÙ´Ó Diffie-Hellman (DH) Group ÏÂÀ¶Ô»°¿òÖÐ, Ñ¡Ôñ Group 2 (1024 Bit)¡£
-
ÔÚ SA Life Time field¶Ô»°¿òÖÐ, ÊäÈë28800¡£
-
µã»÷ Apply °´Å¥. Õâ¾Í·µ»Øµ½IKE Policies µÄÖ÷²Ëµ¥ÉÏ¡£
µÚ¶þ²½£¬µã»÷×ó±ßVPN²Ëµ¥ÏµÄVPN PolicyÏîÄ¿¡£³öÏÖÈçÏÂÅäÖÃÒ³Ãæ¡£
µã»÷Add Auto Policy°´Å¥´´½¨Ò»¸öеÄVPN²ßÂÔ¡£
-
ÔÚPolicy Name¶Ô»°¿òÖÐÊäÈë¡° toFvs318v1¡±×÷Ϊ²ßÂÔÃû¡£
-
ÔÙ´ÓIKE policyÏÂÀ¶Ô»°¿òÖÐ, Ñ¡È¡ÎÒÃǶ¨ÒåºÃµÄIKE Policy¡£ÕâÀïÊÇʹÓá°toFvs318v1¡±×÷ΪIKE Policy¡£
-
ÔÙ´ÓRemote VPN Endpoint Address TypeÏÂÀ¶Ô»°¿òÖУ¬Ñ¡È¡¡°Ip Address¡±¡£
-
ÔÚAddress Date¶Ô»°¿òÖÐÊäÈë¶Ô¶ËÉ豸µÄ¹Ì¶¨IPµØÖ·¡£
-
ÔÚSA Life Time (Seconds)¶Ô»°¿òÖÐÊäÈëĬÈÏ86400¡£
-
ÔÚSA Life Time (Kbytes)¶Ô»°¿òÖÐÊäÈëĬÈÏΪ4194303¡£
-
ÔÚIPSec PFS¶Ô»°¸´Ñ¡¿òÖÐÑ¡ÉÏ¡£.
-
´ÓPFS Key GroupÏÂÀ¶Ô»°¿òÖÐÑ¡È¡Group 2 (1024 Bit).
-
ÔÙ´ÓTraffic Selector Local IPÏÂÀ¿òÖÐÑ¡È¡Subnet address¡£.
-
ÔÚStart IP AddressÌîÉϱ¾µØLAN IPµØÖ·¶Î¡£
-
ÔÚSubnet Mask¶Ô»°¿òÖÐÌîÉϱ¾µØµÄ×ÓÍøÑÚÂë¡£
-
ÔÙ´ÓTraffic Selector Remote IPÏÂÀ¶Ô»°¿òÖÐÑ¡È¡Subnet address¡£
-
ÔÚÕâStart IP AddressÉÏÊäÈëÔ¶¶ËÍø¹ØLAN IPµØÖ·¡£
-
ÔÚSubnet Mask×Ö¶ÎÉÏÌîÉ϶ԶËLAN×ÓÍøÑÚÂë¡£
-
ÔÚESP Configuration Enable EncryptionÀïÑ¡ÉÏEnable Encryption¶Ô»°¿ò¡£.
-
ÔÚESP Configuration Encryption AlgorithmÏÂÀ¶Ô»°¿òÖÐÑ¡È¡3DES.
-
ÔÚESP Configuration Enable AuthenticationÑ¡ÉÏEnable Authentication¶Ô»°¿ò¡£
-
ÔÚESP Configuration Authentication AlgorithmÏÂÀ¶Ô»°¿òÖÐÑ¡È¡SHA-1¡£.
-
Èç¹ûÏëͨ¹ýWindowsµÄÖ÷»úÃû²é¿´¶Ô¶ËµÄ¼ÆËã»ú£¬¿ÉÔÚNETBIOS Enable¸´Ñ¡¿òÉÏÑ¡ÉÏNETBIOS Enable¡£
-
µã»÷Apply°´Å¥¡£VPN Policy ÅäÖÃÍê±Ï¡£
FVS318v1/v2 µÄ VPN ÅäÖÃ
ÔÚFVS318v1/v2µÄ¹ÜÀíÒ³ÃæÉϵã»÷×ó±ßµÄVPN Settings²Ëµ¥
ÔÚVPN SettingsÒ³ÃæÀïÑ¡ÔñÒ»¸öûÓÐÓõIJßÂÔºÅÂ룬µã»÷×îÏÂÃæµÄEdit°´Å¥¡£ ³öÏÖÈçÏÂͼµÄVPNÅäÖÃÒ³Ãæ
-
ÔÚConnection Name¿òÖÐÊäÈëÒ»¸öVPN²ßÂÔÃû³Æ.¡£Àý
-
ÔÚLocal IPSec Identifier ÖÐÊäÈë±¾µØÉí·ÝÈÏÖ¤±êʶ.¡£Õâ¸ö±êʶ±ØÐëºÍ¶Ô¶ËµÄRemote IPSec IdentifierµÄÉèÖÃÏà¶ÔÓ¦¡£ÔÚÕâ¸öÀý×ÓÖÐʹÓÃ10.1.3.2×÷Ϊlocal identifier¡£
-
ÔÚRemote IPSec IdentifierÖÐÊäÈëÔ¶¶ËÉí·ÝÈÏÖ¤±êʶ£¬¸Ã±êʶ±ØÐëºÍÔ¶¶ËµÄLocal IPSec IdentifierµÄÉèÖñíʾÏà¶ÔÓ¦¡£ÔÚÕâ¸öÀý×ÓÖÐÎÒÃÇÊäÈë10.1.2.2×÷Ϊremote identifier¡£
-
ÔÚTunnel can be accessed fromÏÂÀ²Ëµ¥ÖÐÑ¡Ôña subnet from local addres¡£.
-
ÔÚLocal LAN start IP AddressÊäÈë±¾µØLANËùÔÚÍø¶Î¡£
-
ÔÚLocal LAN IPSubnetmaskµÄ¶Ô»°¿òÖÐÊäÈë×ÓÍøÑÚÂë¡£.
-
´ÓTunnel can access µÄÏÂÀ²Ëµ¥ÖÐÑ¡Ôña subnet from local address¡£
-
ÔÚRemote LAN Start IP AddressµÄ¶Ô»°¿òÖÐÊäÈë¶Ô¶ËµÄÄÚÍøµÄËùÔÚµØÖ·¶Î¡£
-
ÔÚRemote LAN IPSubnetmaskµÄ¶Ô»°¿òÖÐÊäÈë¶Ô¶Ë¾ÖÓòÍøµÄ×ÓÍøÑÚÂë(¡£
-
ÔÚRemote WAN IP or FQDNµÄ¶Ô»°¿òÖÐÊäÈë¶Ô¶ËFVS318v3µÄ¹ãÓòÍø½Ó¿ÚIPµØÖ·¡£
-
´ÓSecure AssociationÏÂÀ¿òÖÐ, Ñ¡ÔñMain Mode.
-
ÔÚPerfect Forward Secrecy, Ñ¡ÔñEnabled°´Å¤¡£.
-
ÔÙ´ÓEncryption ProtocolÏÂÀ¶Ô»°¿ò, Ñ¡Ôñ3DES¼ÓÃÜ·½Ê½¡£.
-
ÔÚPreShared Key¶Ô»°¿òÖÐ ,ÊäÈëͳһµÄ×Ó·û´®¹²ÏíÃÜÔ¿¡£
-
ÔÚKey Life¶Ô»°¿ò, ÊäÈë28800 seconds.(³ö³§Ä¬ÈÏÖµ)
-
ÔÚIKE Life¶Ô»°¿òÖÐ, ÊäÈë86400 seconds(³ö³§Ä¬ÈÏÖµ)¡£.
-
Èç¹ûÏëͨ¹ýWindowsµÄÖ÷»úÃû²é¿´¶Ô¶ËµÄ¼ÆËã»ú£¬¿ÉÔÚNETBIOS Enable¸´Ñ¡¿òÉÏÑ¡ÉÏNETBIOS Enable¡£
-
µã»÷Apply°´Å¥ÕâЩËùÓÐÅäÖö¼»á´æ´¢µ½É豸ÖÐ. È»ºó¾Í»á·µ»Øµ½VPN SettingsÒ³ÃæÉÏ¡£
²âÊÔ VPN
ÎÒÃÇ¿ÉÒÔͨ¹ýICMP²âÊÔVPNÊÇ·ñÒѾ³É¹¦½¨Á¢Á¬½Ó£¬ÔÚWindowsµÄ²Ù×÷ϵͳÉϳ£ÓõÄICMP²âÊÔÃüÁîÊÇPING¡£PINGÖ¸Áî¿ÉÒÔÓÐЧµØ·´Ó¦Á½µãÖ®¼äµÄTCP/IPµÄÁ¬Í¨ÐÔ¡£ÔÚ½¨Á¢VPNͨµÀµÄÒ»¸ö¶ËµãÉÏÈÃÄÚÍø´óһ̨µçÄÔÖ÷»úPING¶Ô¶ËµÄµçÄÔÖ÷»ú£¬Èç¹ûPINGÏÔʾÏìÓ¦£¬Ôò±íÃ÷VPNͨµÀÒѾ½¨Á¢£¬²¢¿ÉÒÔͨ¹ýPINGÿ¸ö°üµÄÏìӦʱ¼ä£¬ÏìÓ¦ÂʵȲÎÊý¹Û²ìVPNͨµÀµÄÖÊÁ¿£¬·´Ö®£¬Ôò±íÃ÷VPNͨµÀ½¨Á¢²»³É¹¦¡£
µ±È»£¬ÎÒÃÇÒ²¿ÉÒÔͨ¹ýVPN status¹¦Äܲ˵¥Àï²é¿´µ½VPN״̬¡£
ÔÚFVS318v3µÄ¹ÜÀíÒ³ÃæÉÏ£¬µã»÷×ó±ßµÄVPN status²Ëµ¥£¬±ã»á³öVPN Status/LogÒ³Ãæ¡£ÔÚ¸ÃÒ³ÃæÀÎÒÃÇ¿ÉÒÔ¿´µ½IPSec½¨Á¢Ê±£¬»á»°Ò»ºÍ»á»°¶þµÄÏêϸÐÅÏ¢¡£
ÔÚFVS318v1/v2µÄ¹ÜÀíÒ³ÃæÉÏ£¬µã»÷×ó±ßµÄRouter status²Ëµ¥£¬ÔÚ³öÏÖµÄÒ³ÃæÀïµã»÷Show VPN Status button°´Å¥£¬±ã»á³öIPSec Connection StatusÒ³Ãæ¡£ÔÚ¸ÃÒ³ÃæÀÎÒÃÇ¿ÉÒÔ¿´µ½IPSec½¨Á¢Ê±£¬»á»°Ò»ºÍ»á»°¶þµÄÏêϸÐÅÏ¢¡£
¹ÊÕÏÅųý
1) ¼ÙÈçVPNûÓн¨Á¢ÆðÀ´£¬ÄÇôÎÒÃÇÊ×ÏÈÓ¦¸Ã¼ì²éÁ½¸öVPN¶ËµãÖ®¼äµÄÎïÀíÁ´Â·×´¿ö¡£Ê×ÏÈ£¬ÈÃVPNÉ豸µÄInternet ¶Ë¿ÚÔÊÐíPINGµÄ¹¦ÄÜ´ò¿ª£¨(FVS318v3 ÔÚRules ²Ëµ¥Àï, FVS318v1/v2 ÔÚPortsµÄ²Ëµ¥Àï), È·¶¨Äã´ÓVPNµÄÒ»¶ËPINGÁíÍâÒ»¶ËµÄ¹ãÓòÍø¶Ë¿ÚµÄIPµØÖ·ÊÇÄܹ»PINGͨµÄ¡£Èç¹ûÄãʹÓõÄÊǶ¯Ì¬µÄI»¥ÁªÍøIPµØÖ·£¬ÔòÄã±ØÐëÈ·ÈÏÔÚÿһ¸öVPNÉ豸µÄVPNÉèÖÃÀïÃæ¶Ô¶ËIPµØÖ·É裨FQDN£©¶¨ÀïµÄÄÚÈÝÊÇ×îеġ£Èç¹ûÊÇÊÇʹÓö¯Ì¬ÓòÃû·þÎñÀ´½âÊͶ¯Ì¬IPµØÖ·µÄ£¬ÇëÄãÈ·È϶¯Ì¬ÓòÃûºÍIPµØÖ·ÊÇÏà¶ÔÓ¦µÄ¡£
Ôٴμì²éÁ½Ì¨VPNÉ豸ÉϵÄVPN settingÀïµÄÅäÖÃÊÇ·ñÒ»Ö¡£ÆäÖеÄһЩÃô¸ÐµÄ²ÎÊýÊDZØÐëÒª×Ðϸ¼ì²éµÄ£¬È磺pre-shared keyÊÇ·ñÒ»Ö£¬remote and local identifierÊÇ·ñ»¥Ïà¶ÔÓ¦£¬encryption ºÍauthentication algorithmsÊÇ·ñÒ»ÖÂ, exchange modeÊÇ·ñÒ»Ö£¬PFS ÊÇ·ñͬʱÆôÓõȡ£2)¼ÙÈçVPN״̬ÀïÏÔʾVPNÁ¬½ÓÒѾ½¨Á¢£¬µ«ÈÔÈ»²»ÄÜͨ¹ýVPNËíµÀ»ñÈ¡ÍøÂç×ÊÔ´µÄÇé¿öÏ£¬ÎÒÃÇÊ×ÏÈÓ¦¸Ã¼ì²éÌṩ×ÊÔ´µÄÖ÷»úÊÇ·ñºÍVPN·ÓÉÆ÷ÓÐЧµØÁ¬½Ó£¬Ö÷»úµÄÍø¹ØÊÇ·ñÒѾָÏòVPN·ÓÉÆ÷¡£¿ÉÒÔͨ¹ýVPN·ÓÉÆ÷Diagnostics²Ëµ¥ÀïµÄPINGÃüÁî¼ì²é·ÓÉÆ÷ºÍÖ÷»úµÄÁ¬Í¨ÐÔ¡£¼ÙÈçÄãÊÇʹÓÃÖ÷»úÃû·ÃÎʵģ¬¿ÉÒÔ³¢ÊÔʹÓÃÆäIPµØÖ·½øÐзÃÎÊ¡£ÁíÍ⻹ÐèҪȷ¶¨Ìṩ×ÊÔ´µÄÖ÷»úÊÇ·ñ°²×°Á˸öÈË·À»ðǽ»òÕßÔÚÍøÂçÉèÖÃÀïʹÓÃÁËIPµØÖ·¹ýÂ˹æÔò£¬µ±È·ÈÏÉÏÊöÇé¿öÒÔºó»¹ÊÇ·ÃÎÊʧ°Ü£¬Ôò¿ÉÒÔ³¢ÊÔÔÚÁ½¸öVPNÉ豸µÄVPN ²ßÂÔÀïͬʱ½ûÓÃPFS¡£
3) ¼ÙÈçÄãÔÚFVS318v1/v2Ò»¶Ëͨ¹ýVPNËíµÀ²»ÄÜPINGͨ¶Ô¶ËµÄµÄ¾ÖÓòÍøIPµØÖ·£¬ÕâÖÖÇé¿öÊÇÕý³£µÄ£¬Äã¿ÉÒÔ³¢ÊÔPINGÒ»ÏÂÔÚFVS318v3¾ÖÓòÍøºóÃæµÄÖ÷»ú£¬¹Û²ìVPNËíµÀÊÇ·ñ½¨Á¢¡£
4) NetgearµÄVPN·ÓÉÆ÷¶¼¾ßÓб¸·ÝÅäÖõŦÄÜ£¬µ±ÄãÁªÏµNetgearµÄ¼¼ÊõÖ§³ÖµÄʱºò£¬Ìṩһ·Ý²úÆ·µÄÅäÖÃÎļþ¶ÔNetgearµÄ¼¼ÊõÖ§³Ö¹¤³Ìʦ°ïÖúÄã¸ü¿ìµØ½â¾öÎÊÌâÊǺÜÓаïÖúµÄ£¬ÎÒÃÇ»áÔÚÊÔÑéÊÒÀïÃ棬ÓÃÏàÓ¦µÄÉ豸ÖØе¼Èëí¥µÄÅäÖÃÎļþ£¬Ä£ÄâÓû§µÄʹÓû·¾³ÒÔÈ·¶¨ÎÊÌâµÄ´æÔÚ¡£ÎÒÃÇÔÚÖØе¼ÈëÅäÖÃÎļþµÄʱºòÐèÒªÊäÈëÓû§É趨µÄÉ豸¹ÜÀíÃÜÂ룬ËùÒÔµ±Äú´òË㽫±¸·ÝÅäÖÃÎļþÌá½»¸øÎÒÃǵÄʱºò£¬Ç븽´ø¸æËßÎÒÃÇÉ豸µÄ¹ÜÀíÃÜÂ룬ÁíÍ⣬Èç¹ûÉ豸ÊǽûֹʹÓÃDHCP¹¦Äܵģ¬»¹ÐèÒª¸æËßÎÒÃÇÉ豸µÄĬÈÏIPµØÖ·¡£
-
- ´ËFAQ¶ÔÄãÓаïÖúÂð£¿[ ÊÇ | ·ñ ] | ÊÕ²Ø | À´Ô´£ºMyprice¼Û¸ñÍø
- 7.ÓÃFVS124G / FVS338 / FVX538 µÄ QoS ʵÏÖ·þÎñÓÅÏȼ¶¿ØÖÆ
-
-
- ´ð°¸£º
-
VPN ·À»ðǽÀïÃæµÄ QosÖ§³Ö
È«ÇòÁìÏȵÄVPN ·À»ðǽר¼ÒNetgear ³öÆ·µÄFvs124g/fvs338/fvx538VPN·À»ðǽ¶¼Ö§³ÖIEEE802.1D-1998£¨802.11pͨÓÃÓÅÏȼ¶±ðµÄQos·þÎñ£©¡£ÔÚNetgearµÄ·À»ðǽÀïÃ棬ÓÅÏȵȼ¶µÄÉ趨ϸ·Öµ½Ã¿Ò»¸ö·þÎñ»òÕßIPµØÖ·¹æÔò£¬Qos´¦ÀíµÄÓÅÏȼ¶±ðÈ¡¾öÓڸ÷þÎñ»òÕßIPµØÖ·¹æÔòËùÉ趨µÄÓÅÏȵȼ¶£¬ÓÅÏȼ¶±ð¸ßµÄ·þÎñ»òÕßIPµØÖ·¹æÔò½«»á±»ÓÅÏÈ´¦Àí¡£
ÔÚNetgearµÄVPN·À»ðǽÀïÃ棺
- Äú¿ÉÒÔÑ¡Ôñ½ÓÊÜĬÈÏÓÅÏȼ¶±ðÉ趨µÄÊý¾Ý°ü£¬¶ø²»È¥¸Ä±äËûÃǵÄÓÅÏȼ¶±ð¡£
- Äã¿ÉÒÔÐÞ¸ÄĬÈϵÄÓÅÏȼ¶±ðÉ趨µÄÊý¾Ý°üµÄ¼¶±ð£¬ÒԸıä·À»ðǽ¶ÔÊý¾Ý°ü´¦ÀíµÄÓÅÏÈ˳Ðò¡£
×¢Ò⣺QosÓÅÏȼ¶±ðµÄÉ趨ÍêÈ«×ñÑIEEE 802.1D-1998 (formerly 802.1p) ±ê×¼µÄ·þÎñµÈ¼¶±ê¼Ç¡£
Netgear¶¨ÒåµÄQos
Native ToS Setting
Netgear QoS Setting
None
6
5
4
3
2
7
7
6
5
4
3
2
6
6
6
5
4
3
2
5
5
6
5
4
3
2
4
4
6
5
4
3
2
3
3
6
5
4
3
2
2
2
6
5
4
3
2
1£¨Ä¬ÈÏ£©
1
6
5
4
3
2
0 (×îµÍ)
0
6
5
4
3
2
´ÓÉÏͼ¿ÉÒԹ۲쵽NetgearµÄVPN·À»ðǽÉ豸¶ÔÀ´×ÔÄÚ²¿ÍøÂçµÄÊý¾Ý°üµÄ´¦Àí¹ý³Ì£¬Netgear¶¨ÒåµÄQoSÓÐÁù¸öµÈ¼¶£¬À´×ÔÍøÂçµÄÊý¾Ý°ü½«¸ù¾ÝÓû§ÔÚ¹æÔòÄÚÉ趨µÄQoSµÈ¼¶½øÐд¦Àí¡£¾ÙÀýÈçÏ£º
Àý×Ó1£ºµ±À´×ÔÍøÂçµÄÊý¾Ý°ü±»¶¨ÒåΪµÈ¼¶3£¬¶øÔÚ·À»ðǽÀﶨÒå¸ÃÊý¾Ý°üͨ¹ýµÄµÈ¼¶ÎªNONEµÄʱºò£¬·À»ðǽ½«°´Õյȼ¶3µÄÓÅÏÈ´ÎÐòÀ´´¦Àí¸ÃÊý¾Ý°ü¡£
Àý×Ó2£ºµ±À´×ÔÍøÂçµÄÊý¾Ý°ü±»¶¨ÒåΪµÈ¼¶3£¬¶øÔÚ·À»ðǽÀﶨÒå¸ÃÊý¾Ý°üͨ¹ýµÄµÈ¼¶Îª7µÄʱºò£¬·À»ðǽ½«°´Õյȼ¶7µÄÓÅÏÈ´ÎÐòÀ´´¦Àí¸ÃÊý¾Ý°ü¡£
Àý×Ó3£ºµ±À´×ÔÍøÂçµÄÊý¾Ý°ü±»¶¨ÒåΪµÈ¼¶3£¬¶øÔÚ·À»ðǽÀﶨÒå¸ÃÊý¾Ý°üͨ¹ýµÄµÈ¼¶Îª2µÄʱºò£¬·À»ðǽ½«°´Õյȼ¶2µÄÓÅÏÈ´ÎÐòÀ´´¦Àí¸ÃÊý¾Ý°ü¡£
×ܽá
´ÓÉÏÃæµÄ½éÉÜÎÒÃÇ¿ÉÒÔÖªµÀ£¬ÎÒÃDz»¿ÉÒÔͨ¹ý¸Ä±äQoSµÄÓÅÏȼ¶±ðÀ´¿ØÖÆWAN¿ÚµÄ³ö¿Ú´ø¿í£¬µ«ÎÒÃÇ¿ÉÒÔͨ¹ý¸Ã±äijЩ·þÎñµÄ»òÕßIPµØַͨ¹ý·À»ðǽµÄÓÅÏȼ¶±ð£¬ÒÔ±£Ö¤ÔÚÍøÂ緱æµÄʱºò£¬·À»ðǽ¿ÉÒÔ±£ÕϸÃÖØÒª·þÎñ»òÕßIPµØַͨ¹ý£¬ÒÔÓÐЧµØÀíÓÉ´ø¿í×ÊÔ´¡£
Netgear·À»ðǽÉϵÄQoSÉ趨
ÔÚÈý¸öµØ·½¿ÉÒÔ½øÐÐQosÓÅÏȼ¶±ðµÄÉ趨£¬ÏÖ·Ö±ð½éÉÜÈçÏ£º
1£®ÔÚServicesÀïÃæµÄ Add customer serviceÀïÃæ
ͨ¹ý¸ÃÒ³Ãæ¿ÉÒÔ¶¨Òå·ñÒ»¸ö¶Ë¿Ú·þÎñµÄQosÓÅÏȵȼ¶
ͼ1£ºAdd customer service
2£®ÔÚrulesÀïÃæµÄ Add inbound rulesÀïÃæ
ͨ¹ý¸ÃÒ³Ãæ¿ÉÒÔ¶¨Òå»ùÓÚinbound¹æÔòµÄQosÓÅÏȵȼ¶
ͼ2£ºAdd inbound rules
3£®ÔÚrulesÀïÃæµÄ Add outbound rulesÀïÃæ
ͨ¹ý¸ÃÒ³Ãæ¿ÉÒÔ¶¨Òå»ùÓÚoutbound¹æÔòµÄQosÓÅÏȵȼ¶
ͼ3£ºAdd outbound rules
- ´ËFAQ¶ÔÄãÓаïÖúÂð£¿[ ÊÇ | ·ñ ] | ÊÕ²Ø | À´Ô´£ºMyprice¼Û¸ñÍø
- 8.ÔÚFVS338_FVX538ÉÏÈçºÎÅäÖü°Ê¹Óöà¸ö¹«ÍøIP
-
-
- ´ð°¸£º
-
Ç°Ì᣺ºÜ¶àÓû§ÉêÇëÁ˶à¸ö¹«ÓÐIP£¬ÄÚ²¿ÍøÂçÖÐÒ²ÓÐÈô¸Ę́·þÎñÆ÷ÐèÒªÖ±½Ó¶ÔÓ¦ÓÚ²»Í¬µÄ¹«ÓÐIP¶ÔÍâ½øÐзþÎñµÄÌṩ£¬ÆäÖÐÓÐ2ÖÖ·½Ê½½øÐд¦Àí£º
- ʹÓþ²Ì¬Ó°Éä
- ʹÓÃDMZ
±¾ÎľÍFVS338ÓëFVX538ÈçºÎʹÓöà¸ö¹«ÓÐIP½øÐÐÃèÊö£¬Í¬Ê±½éÉÜÁËÈçºÎÔÚFVS338ÖнøÐÐDMZµÄÉèÖã¬Õû¸ö¹ý³Ì±È½Ï¼òµ¥£¬Èç¹ûÏëÁ˽âFVX538µÄDMZµÄÉèÖã¬Çë²Î¿¼FVX538µÄ¼¼ÊõÖ§³ÖÒ³Ãæ¡£
Ò»¡¢½øÈë·ÓÉÆ÷¹ÜÀíÒ³Ã棨ĬÈÏ192.168.1.1£©,Ñ¡Ôñ²Ëµ¥À¸Security/RulesÒ³Ã棬ÔÚ´ËÒ³½¨Á¢Inbound Services¡£
¶þ¡¢ÉèÖÃÓëʹÓöà¸ö¹«ÓÐIP£¨FVS338ÓëFVX538Ò»Ñù£©
Service Ñ¡ÔñANY£»£¨Èç¹ûÑ¡ÔñAny£¬Ôò¸Ã¹«ÓÐIP¶ÔÓ¦µÄÄÚ²¿·þÎñÆ÷µÄËùÓж˿ڶ¼¿ª·ÅÁË£¬²»½¨ÒéÕâô×ö£¬Í¨³£ÊǶÔÍâÌṩʲô·þÎñ¾Í¿ª·Åʲô¶Ë¿Ú£¬È磺ֻÐèÒªÏòÍâÌṩWEB·þÎñ£¬ÄÇô´Ë´¦Ö»Ñ¡Ôñ¡®HTTP/TCP:80¼´¿É£©
Action Ñ¡ÔñAllow Always;
Send to Lan ServerÊäÈëÄÚ²¿·þÎñÆ÷µØÖ·£»(ÒÔ192.168.1.38ΪÀý)
WAN Users Ñ¡ÔñANY;
Public Destination IP AddressÑ¡ÔñOther Public IP Address£º´Ë´¦Ó¦¸ÃÌîд»¹Ã»ÓÐʹÓõĹ«ÓÐIP£¬ÔÚ´ËÒÔ210.21.59.230ΪÀý£º
Èý¡¢ÅäÖÃFVS338ʹÓÃDMZ
Èç¹ûʹÓùãÓòÍøIP×÷ΪDMZ·þÎñÆ÷¶ÔÍâIP£¬ÄÇôÔÚмÓInbound ServicesµÄʱºò£º
Service Ñ¡ÔñANY£»
Action Ñ¡ÔñAllow Always;
Send to Lan ServerÊäÈëDMZ·þÎñÆ÷µØÖ·£»(ÒÔ192.168.1.38ΪÀý)
WAN Users Ñ¡ÔñANY;
Public Destination IP AddressÑ¡ÔñBroadband.
- ´ËFAQ¶ÔÄãÓаïÖúÂð£¿[ ÊÇ | ·ñ ] | ÊÕ²Ø | À´Ô´£ºMyprice¼Û¸ñÍø
- 9.ÈçºÎ½â¾ö²»ÄÜÔÚÒѾ½¨Á¢µÄ VPN ËíµÀÀïÃæͨ¹ýÓ³ÉäÍøÂçÇý¶¯Æ÷¿½±´ÎļþµÄÎÊÌâ
-
-
- ´ð°¸£º
-
ÔÚ FVX538 ÀïÃæµÄ Rule Ñ¡ÏîÀïÃ棬ÓÐÒ»¸ö ¡°Drop fragmented IP packets¡± µÄÑ¡ÏÔÚĬÈϵÄÇé¿öÏÂÊÇÑ¡Éϵġ£Èç¹ûÓû§ÔÚʹÓÃÓ³ÉäÍøÂçÇý¶¯Æ÷³öÏÖÀàÊÔµÄÎÊÌâµÄʱºò£¬¿ÉÒÔ³¢ÊÔ½«ÆäÈ¡Ïû¡£
¸ÃÏÖÏó³öÏÖÔÚ FVX538 ºÍ FVS318V3 ½¨Á¢ VPN µÄʱºò£¬²¢²âÊÔÓÐЧ¡£µ«¸ÃÇé¿öÒ²Ðí»¹»á³öÏÖÔÚÆäËü²úÆ·½¨Á¢µÄ VPN ͨµÀÉÏ£¬Èç¹ûÆäËüÉ豸ÔÚ½¨Á¢ VPN Á¬½ÓµÄʱºòÓöµ½ÏàËÆ»òÕßÀàËƵÄһЩÆäËüÓ¦ÓõÄÎÊÌ⣬¶¼¿ÉÒÔ³¢ÊÔÐ޸ĸÃÑ¡Ïî×÷³¢ÊÔ¡£
- ´ËFAQ¶ÔÄãÓаïÖúÂð£¿[ ÊÇ | ·ñ ] | ÊÕ²Ø | À´Ô´£ºMyprice¼Û¸ñÍø
- 10.FVL328ÓëWindows 2000 ×Ô´ø VPN ¿Í»§¶ËµÄÁ¬½ÓÅäÖùý³Ì
-
-
- ´ð°¸£º
-
The following will walk you through configuring the FVL328 and Windows 2000 Prof/Server and XP for VPN.
Wednesday, August 31, 2005
ROUTER STATUSA. Please obtain the following information for Proper VPN configuration.
- Firmware Version and Release (this may be important if a possible bug is encountered)(The firmware version here is 1.3 release 12)
- WAN IP and Mask Address. (206.135.38.248)
- LAN IP (192.168.10.9) and Mask Address (255.255.255.0). (An attached devices IP Address will be used & not the FVL328¡¯s LAN IP)
- Proceed to Attached devices an obtain an IP from the list, then proceed to IKE Policy.
IKE POLICY
B. Proceed and select ¡®ADD.¡¯
IKE POLICY CONFIGURATION
Cont.C.IKE Policy Configuration
- The Policy Name is for your reference only and not crucial to establishing a VPN connection.
- Please specify the ¡®Direction Type¡¯ as ¡®Both.¡¯
- Please specify the ¡®Exchange Mode¡¯ as ¡®Main Mode.¡¯
- Please specify the ¡®Local Identity as ¡®Local IP Address.¡¯
- Please specify the ¡®Remote Identity as ¡®Remote IP Identity.¡¯
- Please specify the ¡®Encryption Algorithm¡¯ as ¡®DES.¡¯
- Please specify the ¡®Authentication Algorithm¡¯ as MD5.¡¯
- Please select ¡®Pre-Shared Key¡¯ for ¡®Authentication Method¡¯ and specify a key such as ¡®123456789 (without the quotes and period).¡¯
- Please select ¡®APPLY¡¯.
VPN Policies
D. Please select ¡®Add Auto Policy.¡¯ The Policy in this screen shot is what the policy will look like after we configure the policy.
AUTO VPN POLICY CONFIGURATION
E. Auto VPN policy
- Please specify a Policy Name. The ¡®Policy Name¡¯ is for your reference only.
- Please select the correct IKE Policy, which in this case is the IKE policy Name we just created.
- Please specify the ¡®Remote VPN Endpoint¡¯ as the Remote WAN¡¯s IP address.
- Please select and check IPSec PFS and select Group 1 (768 Bit) for the PFS Key Group.
- Please specify the ¡®Local IP¡¯ under ¡®Traffic Selector¡¯ as ¡®Subnet Address¡¯ and specify the Local LAN IP and Mask address of the FVL328 accordingly.
- Please specify the ¡®Remote IP¡¯ under ¡®Traffic Selector¡¯ as ¡®Subnet Address¡¯ and specify the Remote LAN IP and Mask address if a router is used on the remote site and the WAN IP and Mask Address if the Remote is connected directly to the Internet without a Router.
- Now, we will check and enable Encryption, and Authentication. under ESP Configuration.
- Please specify ¡®Encryption Algorithm¡¯ as ¡®DES,¡¯ and ¡®Authentication Algorithm¡¯ as ¡®MD5.¡¯
VPN STATUS
F. VPN Status
- The above screen shot displays the logs and the IPSec and IKE SA that is displayed when a VPN Tunnel is established successfully.
Windows 2000, XP Local Security Settings
G. Local Security Policy is located at:
- Start.
- Control Panel.
- Administrative Tools.
- Local Security Policy.
H. Local Security Settings.
- Right click on IP Security Policies on Local Machine.
- Select and click on Create IP Security Policy.
IP Security Policy Wizard
I. Uncheck to ¡®Activate the default response rule.¡¯
IP Security Policy Name
J. Enter a ¡®Name¡¯ for the Policy, for example: ¡°w2k_fvl328.¡±
K. The Description above was entered for Policy Description only and it states:
¡°Tunnel settings from the W2k to the FVL328.¡±
W2k_FVL328 Policy
L. Now we will create an IP security Rule for each tunnel one at a time as follows.
- Select ¡®Add.¡¯
New Rule Properties for W2k_FVL328
M. Please select ¡®New IP Filter List¡¯ and Select ¡®Add.¡¯
IP Filter List for W2k_FVL328
N. Specify the Name as ¡®w2k_fvl328.¡¯ The description we entered for description only as ¡®IP Filter List from w2k to the fvl328.¡¯
- Select ¡®Add.¡¯
IP Filter List Properties for W2k_FVL328
O. The Source address is set to ¡®A specific IP Address.¡¯
- Please set the IP address accordingly.
- Example: IP address is the WAN IP of the w2k system (206.135.38.247).
- The Subnet mask is set to broadcast.
P. The Destination address is set to ¡®A specific IP Address.¡¯
- Please set the IP address accordingly.
- Example: IP address is the LAN IP (192.168.10.11) of a workstation of the LAN and not that of the LAN IP of the FVL328
- The Subnet mask is set to broadcast.
- Please check ¡®Mirrored.¡¯
- Select ¡®OK
Filter Action Properties
Q. Please select ¡®Add.¡¯
Filter Action Name for W2k_FVL328
R. Specify the Name as ¡®w2k_fvl328.¡¯ The description we entered for description only as ¡®Filter Action from w2k to the fvl328.¡¯
- Select ¡®Next.¡¯
Filter Action for W2k_FVL328
S. Please select ¡®Negotiate Security¡¯ and then select ¡®Next.¡¯
Filter Action for W2k_FVL328
T. Please select ¡®Do not communicate with computers that do not support IPSec.¡¯
- Select ¡®Next.¡¯
W2k_FVL328 Security Method
U. Please select High (Encapsulated Secure Payload) Data will be encrypted, authenticated, and modified.
- Select ¡®Next.¡¯
W2k_FVL328 Security Method Properties
V. We should now be at the New Rule Properties with w2k_fvl328 checked under ¡®Filter Action.¡¯
- Double click on the w2k_fvl328 Filter Action Rule.
- w2k_fvl328 properties is displayed as above.
- Please make sure that ¡®Accept unsecured communication, but always respond using IPSec¡¯ is checked, and that ¡®Session key_Perfect Forward Secrecy¡¯ is checked also.
- Select ¡®OK
W2k_FVL328 Connection Type
W. Please select ¡®Connection Type¡¯ and make sure that ¡®All network connections¡¯ is selected.
- Select ¡®Apply.¡¯
W2k_FVL328 Tunnel Setting
X. Please select ¡®Tunnel Setting¡± and select ¡®The tunnel endpoint is specified by this IP Address.¡¯ Please enter the IP Address of the WAN of the FVL328 (in this case: 206.135.38.248).
- Select ¡®Apply.¡¯
W2k_FVL328 Authentication Methods
Y. Please select ¡®Authentication Methods¡¯ and highlight ¡®Kerberos¡¯ and select ¡®Add.¡¯
W2k_FVL328 Authentication Method Properties
Z. Please select ¡®Use the string to protect the key exchange (preshared key).¡¯
- Type the following digits: 123456789 (I use these digits as an example and for testing purposes only. You may use a different digit format).
- Select ¡®OK.¡¯
W2k_FVL328 Authentication Method Main Display after configuration
Z1. The display above is a display of the Authentication Method once it is configured.
- Select ¡®OK.¡¯
W2k_FVL328 Properties
Z2. We will now create the Security Policy from the FVL328 to the W2k. A Security Policy is needed from both directions in-order to establish successfully.
- Select ¡®Add.¡¯
IP Filter List Creation for FVL328_W2k
Z3. Please be sure that ¡®New IP Filter List¡¯ is checked and then select ¡®Add.¡¯
IP Filter List for FVL328_W2k
Z4. Specify the Name as ¡®fvl328_w2k.¡¯ The description we entered for description only as ¡®IP Filter List from fvl328 to the w2k.¡¯
- Select ¡®Add.¡¯
Z5. The Source address is set to ¡®A specific IP Address.¡¯
- Please set the IP address accordingly.
- 1.Example : IP address is the LAN IP (192.168.10.11) of a workstation of the LAN and not that of the LAN IP of the FVL328.
- 2.The Subnet mask is set to broadcast (255.255.255.255).
Z6. The Destination address is set to ¡®A specific IP Address.¡¯
2. Please set the IP address accordingly.
- Example: IP Address is the WAN IP (206.135.38.247) of the W2k system
- The Subnet mask is set to broadcast (255.255.255.255).
- Please check ¡®Mirrored.¡¯
- Select ¡®OK.¡¯
IP Filter List after creation for FVL328_W2k
Z7. Select ¡®Close.¡¯
New Rule Properties for the FVL328_W2k
Z8. Please select fvl328_w2k in the IP Filter List and then select the ¡®Filter Action¡¯ tab.
Filter Action Properties for FVL328_W2k
Z8. Please select w2k_fvl328 and proceed to the ¡®Connection Type¡¯ tab and select ¡®All network connections.¡¯(We will use the w2k_fvl328 configuration for all the authentication methods. They are the same both ways). Proceed to ¡®Tunnel Setting.¡¯
Tunnel Setting for FVL328_W2k
Z9. Please select ¡®The tunnel endpoint is specified by this IP Address and specify the WAN IP (206.135.38.247) address of the W2k system.
- Select the ¡®Authentication Methods¡¯ tab.
Authentication Methods for FVL328_W2k
Z10. Please highlight ¡®Kerberos¡¯ and select ¡®Add.¡¯
Authentication Method Properties for FVL328_W2k
Z11. Please select ¡®Use this string to protect the key exchange (preshared key)¡¯ and input the following digits: 123456789.
1. Select ¡®OK.¡¯
Authentication Method Main display for FVL328_W2k
Z12. Select ¡®OK.¡¯
w2k_fvl328 & fvl328_w2k IP Security Rules main
Z13. Please select the ¡®General¡¯ tab. It is not important which IP Security Rule is selected (but please makesure that both are checked) at this point.
w2k_fvl328 General Properties.
Z14. Please select ¡®Advanced.¡¯
w2k_fvl328 General/Key Exchange Settings
Z15. Please select ¡®Methods.¡¯
W2k_fvl328 Key Exchange Security Method
Z16. Please move up the correct Security Method Preference, which is the following:
Type = IKE
Encryption = DES
Integrity = MD5
Ditfie-Hellman Group = Low (1)Key Exchange Security Method Main
Z17. The above is the correct Security Method preference order.
Z18. Please select ¡®OK, OK, Close.¡¯
Local Security Settings Main
Z19. Please highlight the ¡®w2k_fvl328¡¯ Policy and right click on the policy and highlight ¡®Assign.¡¯
Local Security Settings Main
Z20. Once the w2k_fvl328 is assigned, the ¡®Policy Assigned¡¯ becomes ¡®yes.¡¯
Z21. Proceed to MS-DOS and ping the Workstation IP Address (192.168.10.11) specified in the VPN configuration.
Ping Command on the W2k system
Z22. Above we have pinged the LAN IP of the workstation on the FVL328. The replies indicate successful establishment.
FVL328 VPN Status with Success
Revised 04/08/03
- ´ËFAQ¶ÔÄãÓаïÖúÂð£¿[ ÊÇ | ·ñ ] | ÊÕ²Ø | À´Ô´£ºMyprice¼Û¸ñÍø
- 11.Hub-and-Spoke µÄ¸ÅÄîÓëÅäÖùý³Ì
-
-
- ´ð°¸£º
-
-
Hub-and-Spoke£ºÍ¨Ë×±í´ïÀ´Ëµ£º¸÷·ÖÖ§»ú¹¹ÀûÓÃVPNÉ豸Óë×ܲ¿VPNÉ豸½¨Á¢VPNͨµÀºó£¬³ýÁË¿ÉÒÔºÍ×ܲ¿½øÐÐͨѶ£¬»¹¿ÉÒÔÀûÓÃ×ܲ¿VPNÉ豸»¥Ïà½øÐÐÊý¾Ý½»»»£¬¶ø¸÷VPN·ÖÖ§»ú¹¹²»ÐèÒª½øÐÐVPNµÄËíµÀÁ¬½Ó¡£¶øÔÚIPµØÖ·µÄ¹æ»®·½Ã棬ÔÚ×ܲ¿ÎÒÃÇ¿ÉÒÔÉêÇëÏà¶ÔÎȶ¨µÄ¹Ì¶¨¹«ÍøIPµØÖ·¼°»òÕ߶¯Ì¬¹«ÍøIPµØÖ·À¦°ó¶¯Ì¬ÓòÃû£¬¶øÔÚ·Ö²¿Ôò¿ÉÒÔʹÓö¯Ì¬¹«ÍøIPµØÖ·À¦°ó¶¯Ì¬ÓòÃû»òÕßÊÇʹÓò»ÐèÒª¶¯Ì¬ÓòÃû¹ØÁªµÄµ¥Ïò½ÓÈ뷽ʽ£¬ÐèҪעÒâµÄÊÇ£¬ÔÚÄÚÍøµÄIPµØÖ·¹æ»®·½Ã棬ÎÒÃDZØÐë±£Ö¤ÖÐÐĺͷÖÖ§»úµÄÄÚ²¿ÍøÂ綼ÊôÓÚͬһ¸öAÀà/BÀà/CÀàÍøÂçµÄ²»Í¬µÄ×ÓÍø£¬Hub-and-SpokeµÄÏêϸµÄÅäÖý«ÔÚÏÂÎÄ×÷Ïêϸ½éÉÜ
-
Ä¿Ç°NETGEARÖ§³ÖHub-and-SpokeµÄÖÐÐĶËVPNÉ豸°üÀ¨£º
FVX538/FVS338/FVS124G/FVS318v3
-
ÅäÖð¸Àý£º±¾Àý×ÓÖУ¬ÖÐÐĶËVPNÉ豸ʹÓÃFVX538ºÍ¹Ì¶¨µÄ¹«ÍøµØÖ·½ÓÈ뷽ʽ£¬2¸ö·ÖÖ§»ú¹¹·Ö±ðʹÓÃFVS338ºÍFVS318£¬²ÉÓö¯Ì¬IPµØÖ·µÄ½ÓÈ뷽ʽ£¬ÎÞÐèÉêÇ붯̬ÓòÃû,ÁíÍ⻹ÓÐÒ»¸ö¶¯Ì¬¿Í»§¶ËµÄ½ÓÈ磬·½°¸½¨³Éºó£¬ÖÐÐÄ£¬·ÖÖ§£¬¿Í»§¶ËÖ®¼äµÄÖ÷»ú¶¼¿ÉÒÔͨ¹ýÆäIPµØÖ·»¥Ïà·ÃÎÊ¡£
ÒÔÏÂÊÇÓ²¼þÏà¹ØÐÅÏ¢£º
Nodes
Model
Firmware
WAN IP
LAN IP
LAN Netmask
ÖÐÐÄl(Hub)
FVX538
V1.6.44
210.21.59.228
192.168.1.1
255.255.255.0
·ÖÖ§1(Spoke)
FVS338
V1.6.37
¶¯Ì¬»ñÈ¡
192.168.2.1
255.255.255.0
·ÖÖ§ 2(Spoke)
FVS318
V2.4
¶¯Ì¬»ñÈ¡
192.168.3.1
255.255.255.0
¿Í»§¶Ë£¨Spoke£©
ProsafeVPNClient
V10.3.5
¶¯Ì¬»ñÈ¡
ÎÞÐèÉèÖÃ
ÎÞÐèÉèÖÃ
×¢Ò⣺¸÷·ÖÖ§»ú¹¹µÄLANÓëÖÐÐĵÄLAN×ÓÍøÇ°16λӦ¸ÃÒ»Ö£»
»ù±¾ÍøÂç½á¹¹Í¼ÈçÏ£ºÒ»£ºBranch1 FVS338ÅäÖùý³Ì
1£ºÊ×ÏȽøÈëFVS338µÄWEB¹ÜÀíÒ³Ã棬ÔÚ`WAN Setup` / `Broadband ISP`ÏÂÅäÖùãÓò¿Ú¡£
2£º½øÈë`VPN` / `IKE Policies` Ï£¬µã`Add` °´Å¥Ð½¨Ò»Ìõ²ßÂÔ£¬ÅäÖÃÈçͼ¡£
3£º½øÈë`VPN` / `VPN Policies` Ï£¬µã`Add Auto Policy` °´Å¥Ð½¨Ò»Ìõ²ßÂÔ£¬ÅäÖÃÈçͼ¡£¶þ£ºBranch 2 FVS318ÅäÖùý³Ì
1£ºÊ×ÏȽøÈëFVS318µÄWEB¹ÜÀíÒ³Ã棬ÔÚ`Setup` / `Basic Settings`ÏÂÅäÖùãÓò¿Ú¡£
2£º½øÈë`Setup` / `VPN Settings`£¬Ñ¡ÖÐÆäÖÐÒ»Ìõ²ßÂÔ£¬°´`Edit`°´Å¥À´´´½¨²ßÂÔ£¬ÅäÖÃÈçÏÂͼËùʾ¡£
Èý£º¿Í»§¶ËProsafe VPN ClientµÄÅäÖÃ
- ´ò¿ª¿Í»§¶ËµÄ²ßÂÔÅäÖýçÃ棬½¨Á¢Ò»¸öÃû×ÖΪToCenterµÄ¿Í»§¶Ë²ßÂÔ¡£
- ÅäÖÃSercurity Policy
- ÅäÖÃToCenter
- ÅäÖÃMy Identity
- ÅäÖÃPresharekey
- ÅäÖÃAuthentication-Proposal 1
- ÅäÖÃKey Exchange-Proposal 1
8. ²é¿´¿Í»§¶Ë·ÖÅäµ½µÄIPµØÖ·
ÔÚ±¾·½°¸ÖУ¬¿Í»§¶Ë²ÉÓÃÓÃFVX538×Ô¶¯È¡µÃIPµØÖ·µÄ·½·¨»ñµÃIPµØÖ·£¬ÎÒÃÇ¿ÉÒÔͨ¹ýÔÚ²Ù×÷µÄϵͳµÄÃüÁîÐÐģʽÏÂʹÓÃIPCONFIGÃüÁî²é¿´PCµÄµ±Ç°IPµØÖ·£¬¸ÃµØÖ·±ãÊÇÖÐÐÄ»ò·ÖÖ§»ú¹¹·ÃÎÊ¿Í»§¶ËµÄÖ÷»úËùʹÓõÄIP µØÖ·¡£
ËÄ£ºCentral FVX538ÅäÖùý³Ì1£ºÊ×ÏȽøÈë·ÓÉÆ÷µÄWEB¹ÜÀíÒ³Ã棬ÔÚ`WAN Setup` / `WAN 1 ISP` ÏÂÅäÖÃÆä¹ãÓò¿Ú£¬Èçͼ£º
2£ºÔÚWEB¹ÜÀíÒ³ÃæÖÐÑ¡Ôñ`VPN` / `IKE Policies` µã`Add` Ìí¼ÓÒ»ÌõÁ¬½ÓBranch 1 FVS338µÄIKE Policies£¬ÅäÖÃÈçͼ£º
3£º½øÈë`VPN` / `VPN Policies` Ï£¬µã`Add Auto Policy` °´Å¥´´½¨Á¬½ÓBrance 1 FVS338µÄÒ»Ìõ²ßÂÔ£¬ÅäÖÃÈçͼ¡£
4£ºÔÚWEB¹ÜÀíÒ³ÃæÖÐÑ¡Ôñ`VPN` / `IKE Policies` µã`Add` Ìí¼ÓÒ»ÌõÁ¬½ÓBranch 2 FVS318µÄIKE Policies£¬ÅäÖÃÈçͼ£º
5£º½øÈë`VPN` / `VPN Policies` Ï£¬µã`Add Auto Policy` °´Å¥´´½¨Á¬½ÓBranch 2 FVS318µÄÒ»Ìõ²ßÂÔ£¬ÅäÖÃÈçͼ¡£
6£ºÔÚWEB¹ÜÀíÒ³ÃæÖÐÑ¡Ôñ`VPN` / Mode Config` µã`Add` Ìí¼ÓÒ»ÌõÁ¬½ÓÔ¶³Ì¿Í»§¶ËµÄMode Config Record£¬ÅäÖÃÈçͼ£º
7.ÔÚWEB¹ÜÀíÒ³ÃæÖÐÑ¡Ôñ`VPN` / `IKE Policies` µã`Add` Ìí¼ÓÒ»ÌõÁ¬½ÓÔ¶³Ì¿Í»§¶ËµÄIKE Policies£¬ÅäÖÃÈçͼ
ËÄ£ºÍ¨¹ýÒÔÉÏÅäÖúó£¬Ö»Òª·ÖÖ§1¡¢·ÖÖ§2¡¢¿Í»§¶ËÓëÖÐÐÄÕýÈ·½¨Á¢VPNËíµÀºó£¬·ÖÖ§1ºÍ·ÖÖ§2ºÍ¿Í»§¶ËÖ÷»úÖ®¼ä¾Í¿Éͨ¹ý×ܲ¿µÄVPNÉ豸ʵÏÖÊý¾ÝÁ¬Í¨¡£´Ó¶øʵÏÖFVX538 VPNϵÄHub-and-Spoke¡£
NB
-
- ´ËFAQ¶ÔÄãÓаïÖúÂð£¿[ ÊÇ | ·ñ ] | ÊÕ²Ø | À´Ô´£ºMyprice¼Û¸ñÍø
- 12.FVX538/FVS338/FVS124G firmware Éý¼¶½¨ÒéÊÂÏî
-
- ´ð°¸£º
- Éý¼¶µ½×îа汾ºóÐèÒª½«É豸¸´Î»£» ¸´Î»ºóÔÙÉý¼¶Ò»´Î£» ½«É豸ÖØÆô¶¯£» ÔÚrouter statusÖв鿴£ºprimary firmwareºÍsecondary firmwareÊÇ·ñÒ»Ö£»
-
- 13.ÈçºÎÅäÖà FVL328 À´Ê¹Óöà¸ö¹«ÓÐ IP µØÖ·
-
-
- ´ð°¸£º
-
ÐèÇó£ºÓû§Óжà¸ö¹«ÓÐIP£¬ÍøÂçÀïÃæÓм¸Ì¨·þÎñÆ÷ÐèÒª¶ÔÍâÃæÌṩ·þÎñ£¨È磺WEB/FTP/POP3/SMTP£©£¬Ã¿Ì¨·þÎñÆ÷¶ÔÓ¦Ò»¸ö¹«ÓÐIP£»
»·¾³£º·À»ðǽÓÃFVL328£¨F/W°æ±¾£º2.0.07£©£¬3̨·þÎñÆ÷·Ö±ð¶ÔÍâÌṩ²»Í¬µÄ·þÎñ£»
ÄÇôÔÚFVL328µÄÉèÖÃÉÏÐèÒª°üÀ¨£º
- ÔÚNETWORK DATABSEÀïÃæÒªÓÐ3̨·þÎñÆ÷µÄÏà¹ØÐÅÏ¢£»
- ÔÚWANÀïÃæ·Ö±ð¶¨ÒåºÃ¹«ÓÐIPÓë3̨·þÎñÆ÷µÄ¶ÔÓ¦¹Øϵ£»
- ÔÚ2¶¨ÒåºÃºó£¬·þÎñÆ÷µÄËùÓж˿ڶ¼ÊÇ¿ª·ÅµÄ£¬Òò´ËÐèÒªÔÚRulesÀïÃæ¹ýÂ˵ô²»ÐèÒª¿ª·ÅµÄ¶Ë¿Ú£º
1£©¶¨Òå·þÎñ·¶Î§£»
2£©¶¨Òå¹æÔò
Ê×ÏÈÎÒÃÇÓÐËæרÏß·ÖÅäµÄÈý¸ö¹Ì¶¨IPµØÖ·£º210.21.56.228¡¢210.21.56.229¡¢210.21.56.230£¬¾ßÌå¹æ»®ÈçÏÂͼ£º
´ò¿ªä¯ÀÀÆ÷£¬ÔÚÆäÖеĵØÖ·À¸ÖÐÊäÈëhttp://192.168.0.1½øÈëFVL328µÄ¹ÜÀíÒ³Ã棬µã»÷×ó±ßµÄ¡°Basic Settings¡±£¬ÔÚÓұߵġ±Internet IP Address¡±ÖÐÊäÈëĬÈϵĹ«ÍøIPµØÖ·£ºÈçÏÂͼ¡£
ÕâʱºòÎÒÃǵÄVPN·À»ðǽҲֻÄܹ»¸øÄÚÍøÓû§Ìṩ´úÀíÉÏÍøµÄ¹¦ÄÜ£¬»¹Î´ÄÜʵÏÖ¶Ô¹«ÍøÓû§Ìṩ·þÎñµÄ¹¦ÄÜ£¬ÀýÈ磺¹«Ë¾ÍøÕ¾¡¢Óʼþ·þÎñ¡¢FTPµÈµÄ·þÎñ¡£¼ÙÉ蹫˾ÔÚÓòÃû·þÎñÌṩÉÌ´¦×¢²áµÄÓòÃûΪ£ºtest.net£¬ÇÒA¼Ç¼ָÕëÖ¸Ïò·Ö±ðΪ
www.test.net ¡ª>210.21.56.228
mail.test.net ¡ª>210.21.56.229
ftp.test.net ¡ª> 210.21.56.230
×öÍêÒÔÉϹ¤×÷ºó£¬ÎÒÃǾÍÐèÔÚFVL328·À»ðǽÖаÑÕ⼸¸öµØÖ·°ó¶¨ÓÚWAN¿ÚÉÏ£¬¼Ù¶¨ÎÒÃÇÄÚÍøÌṩwww£¬mail£¬ftpµÄÈý̨·þÎñÆ÷µÄµØÊ®·Ö±ðÊÇ 192.168.0.170¡¢192.168.0.171¡¢192.168.0.172£¬ÎÒÃÇÖ»Ðè×öÈçÏÂÉèÖü´¿É£¬ÈçÏÂͼËùʾ£º
ͨ¹ýÒÔÉÏÉèÖú󣬵±InternetÓû§Ïë·ÃÎʹ«Ë¾·þÎñÆ÷µÄʱºò£¬Á¬½ÓÇëÇ󽫻áÊÇÈçÏÂÁ÷³Ì£º
Internet User ¡ª> www.test.net ¡ª>210.21.56.228 ¡ª>192.168.0.170
Internet User ¡ª> mail.test.net ¡ª>210.21.56.229 ¡ª>192.168.0.171
Internet User ¡ª> ftp.test.net ¡ª> 210.21.56.230 ¡ª>192.168.0.172
ÖÁ´Ë£¬ÎÒÃǵÄVPN·À»ðǽÒѾʵÏÖÁ˶ÔÍâÍøÓû§¶àIP½øÐз´ÏòNATµÄ¹¦ÄÜ¡£
µ«ÊÇ»¹ÓÐÒ»¸ö°²È«ÎÊÌâ¾ÍÊÇ£¬ÕâÑùµÄ»°£¬ÎÒÃÇÿ̨·þÎñÆ÷µÄËùÓж˿ڽ«È«²¿¶ÔÍâÍø¿ª·Å£¬ÎªÁËÖ»¶Ôʹÿ̨·þÎñÆ÷Ö»¶ÔÍ⿪·Å±ØÐèµÄ¶Ë¿ÚÍ⣬È磺WWW·þÎñÆ÷Ö»¿ª·ÅTCP80¡¢MAIL·þÎñÆ÷Ö»¿ª·ÅTCP25&110¡¢FTP·þÎñÆ÷Ö»¿ª·ÅTCP20&21£¬ËùÒÔÎÒÃÇ»¹Ðë×öÈçÏÂÉèÖ㺽øÈë·À»ðǽµÄWEBÅäÖÃÒ³Ã棬ÔÚ×ó±ßµÄ¡°Security¡±Öеġ°Service¡±ÖÐÌí¼Ó×Ô¶¨ÒåµÄ·þÎñ£ºÈçͼËùʾ£º
ÔÚ¡°Service¡±ÖÐÌí¼ÓÍê¶Ô¶Ë¿ÚµÄ¶¨Òåºó£¬ÎÒÃÇÐèÔÚ¡°Rules¡±ÖÐÓ¦Óã¬ÔÚÆä¡°Inbound Services¡±Öа´¡°Ìí¼Ó¡±°ÑÏàÓ¦µÄ¶Ë¿Ú²ßÂÔ·Ö±ð¶¨ÒåÔÚÄÚÍø·þÎñÆ÷ÉÏ£¬ÈçÏÂͼËùʾ£º
×îÖÕËùÓж˿ڲßÂÔ¶¨Òåºó£¬Inbound Servers ÄÚÈÝӦΪÏÂͼËùʾ£º
ͨ¹ýÒÔÉÏÉèÖúó£¬InternetÓû§¾ÍÖ»ÄÜ·ÃÎÊÄÚÍø·þÎñÆ÷µÄ 20¡¢21¡¢25¡¢80¡¢110¶Ë¿Ú£¬´Ó¶øÆðµ½±£»¤·þÎñÆ÷µÄ¹¦ÄÜ¡£
- ´ËFAQ¶ÔÄãÓаïÖúÂð£¿[ ÊÇ | ·ñ ] | ÊÕ²Ø | À´Ô´£ºMyprice¼Û¸ñÍø
- 14.ʹÓ÷ÓÉÆ÷ºóÎÞ·¨Ê¹Óà VPN µÄ¹ÊÕÏÅųý
-
-
- ´ð°¸£º
-
- VPNÊÇÔÚÒòÌØÍøÉÏ°²È«µØÁ¬½ÓÁ½¸öÍøÂçµÄ·½·¨£¬ÀýÈçÁ¬½ÓÒ»¸ö¼ÒÍ¥ÍøÂçºÍÒ»¸ö°ì¹«ÍøÂç¡£ËüÐèÒªÁ½±ßÍøÂ綼¾ßÓÐÌØÊâµÄÉ豸»òÈí¼þ¡£
- ·ÓÉÆ÷µÄVPN ´©Í¸¹¦Äܲ¢·ÇÖ¸ËüÄÜʤÈν¨Á¢VPNµÄ¹¤×÷£¬¶øÊÇÖ¸ËüÄÜÔËÐÐÆäËûÉ豸´´½¨µÄVPNËíµÀͨ¹ý¡£NETGEARµÄËùÓзÓÉÆ÷¾ùÖ§³ÖIPSec, PPTP ¼°L2TPµÄVPN´©Í¸£¬ÇÒÊÇÔÚĬÈÏÇé¿öÏ£¬ÎÞÐè¶Ô·ÓÉÆ÷µÄÈκÎÉèÖýøÐÐÐ޸ġ£
- ÈôÔÚ°²×°ÁËNETGEARµÄ·ÓÉÆ÷ºóÎÞ·¨Ê¹ÓÃÔÀ´µÄVPN£¬Çë²Î¿´ÏÂÊöÄÚÈÝ£º
- ÈôÄúµÄVPNÉ豸֧³Ö NAT-T (NAT´©Í¸)£¬µ«È±Ê¡Ê±Î´ÆôÓã¬ÄÇôÇëÆôÓô˹¦ÄÜ¡£
- ÁªÏµÄúµÄÍø¹Ü£¬ÈÃËû£¨Ëý£©ÐÖúÄúÍê³ÉVPNµÄÅäÖà (ͨÓõÄVPN¿Í»§¶ËÈí¼þÓÐCisco NAT-T»òNETGEAR ProSafeµÈ¡£
- ÈôÄúµÄ¹«Ë¾Ê¹ÓÃL2TP´©Í¸,Òѽ«ÄúµçÄÔµÄMACµØÖ·×¢²áµ½Á˹«Ë¾µÄϵͳ¹ÜÀíÔ±¡£ÄÇôÕÒµ½Â·ÓÉÆ÷µÄMACµØÖ·£¨ÔÚ·ÓÉÆ÷±³Ã棩£¬½«Æä×¢²á¡£
- Éý¼¶Â·ÓÉÆ÷¹Ì¼þ¡£
- ´ò¿ª¶Ë¿ÚÓ³Éä¡£IPsec VPNµÄ¶Ë¿ÚΪ50¡¢51¡¢500£¬PPTP VPNµÄ¶Ë¿ÚΪ1723£¬L2TPµÄ¶Ë¿ÚΪ1701¡£
- ȱʡÇé¿öÏ£¬NETGEAR·ÓÉÆ÷µÄ·À»ðǽ¹¦ÄܻὫWAN¿ÚÊÕµ½µÄÀ´×ÔÒòÌØÍøµÄICMP°ü¶ªÆú£¬¶øÄúµÄVPNÓ¦ÓÿÉÄܽ«Óõ½ICMPÊý¾Ý°ü£¬ËùÒԿɵǼµ½Â·ÓÉÆ÷¹ÜÀíÒ³ÃæÑ¡Ôñ×ó±ß¹¦ÄÜÁбíµÄWAN Setup £¬ÔÚRespond to ping on Internet PortÇ°´ò¹´¡£
- ´ËFAQ¶ÔÄãÓаïÖúÂð£¿[ ÊÇ | ·ñ ] | ÊÕ²Ø | À´Ô´£ºMyprice¼Û¸ñÍø
- 15.·ÓÉÆ÷µÄ VPN ´©Í¸¹¦ÄÜ
-
-
- ´ð°¸£º
-
- ·ÓÉÆ÷Ö§³ÖVPN´©Í¸µÄ¹¦Äܲ¢·ÇÊÇÖ¸ËüÄÜ´´½¨VPNËíµÀ£¬¶øÖ»±íʾËüÔÊÐíÓÉÆäËûÖÕ¶ËËù´´½¨µÄVPNËíµÀͨ¹ýËü¡£¶øͨ¹ý·ÓÉÆ÷µÄVPNËíµÀÊýÄ¿ÓÖÒªÊÓÇé¿ö¶ø¶¨£¬È磺
- VPNÁ¬½ÓµÄÄ¿±êÍø¹Ø²»Ö¹Ò»¸ö
- ËùÁ¬½ÓµÄVPNÍø¹ØÊÇ·ñÖ§³ÖNAT´©Í¸µÄ¼ì²â£¬¼´ÊÇ·ñÖ§³ÖNAT-T.
- ÏÂͼËùʾΪÁ½¸öVPNÁ¬½ÓÊ×ÏÈͨ¹ýÁËÖ§³ÖVPN´©Í¸µÄNETGEAR·ÓÉÆ÷£¬ÔÙÓë¸÷×ÔµÄVPNÍø¹Ø½¨Á¢VPN£º
- ´ËÀýÔò²»Í¬ÓÚÉÏÀý£¬NETGEAR·ÓÉÆ÷ºóÃæÓÐÈý̨µçÄÔͬʱÏòÒòÌØÍøÖеÄͬһ¸öVPNÍø¹Ø·¢ÆðVPNÁ¬½Ó£¬¶øÕâЩµçÄÔÔÚÒòÌØÍøÖÐÕ¼ÓõĹ«ÍøIPÊÇͬһ¸ö£¬ÕâÊÇÓÉÓÚ·ÓÉÆ÷µÄNAT¹¦Äܽ«ËùÓÐ˽ÍøµØÖ·Ó³ÉäΪÁËͬһ¸ö¹«ÍøIPµØÖ·¡£ÓÉ´ËÒ»À´£¬ÒòÌØÍøÖеÄVPNÍø¹Ø¾ÍÎÞ·¨·Ö±çÕâЩµçÄÔ£¬»á½«ËùÓÐÀ´×ÔËüÃǵÄÐÅÏ¢°üÊÓΪÓÉͬһ̨µçÄÔËù·¢³ö¡£
- µ«Èç¹ûVPNÍø¹ØÖ§³ÖNAT-TµÄ»°£¬Ôò¿É¶ÔÀ´×ÔͬһÍøÂçµÄ¶ą̀µçÄÔ½øÐÐʶ±ð£¬´Ë·½°¸¾Í¿ÉÐÐÁË¡£NETGEARµÄ FVS318v3, FVS124G, FVS338¼°FVX538 ¶¼Ö§³ÖNAT-T¡£
- ͬʱ£¬×÷ΪVPNËíµÀ·¢Æð·½µÄ VPN clientÒ²²»ÐèÒªÖ§³ÖNAT-T¡£
- ·ÓÉÆ÷Ö§³ÖVPN´©Í¸µÄ¹¦Äܲ¢·ÇÊÇÖ¸ËüÄÜ´´½¨VPNËíµÀ£¬¶øÖ»±íʾËüÔÊÐíÓÉÆäËûÖÕ¶ËËù´´½¨µÄVPNËíµÀͨ¹ýËü¡£¶øͨ¹ý·ÓÉÆ÷µÄVPNËíµÀÊýÄ¿ÓÖÒªÊÓÇé¿ö¶ø¶¨£¬È磺
- ´ËFAQ¶ÔÄãÓаïÖúÂð£¿[ ÊÇ | ·ñ ] | ÊÕ²Ø | À´Ô´£ºMyprice¼Û¸ñÍø
- 16.VPN ¿Í»§¶Ë¹ÊÕÏÅųý
-
-
- ´ð°¸£º
-
- °²×°ÎÊÌâ
- ÄúµÄµçÄÔÉÏÖ»ÄÜ°²×°Ò»¸ö IPSec µÄ¿Í»§¶Ë¡£
- ÈôÄú֮ǰ°²×°¹ýÆäËûµÄ¿Í»§¶ËÈí¼þ£¬Èç SafeNet¡¢Checkpoint¡¢CiscoµÈµÈ£¬±ØÐëÔÚ°²×° NETGEAR µÄ VPN ¿Í»§¶Ë֮ǰ½«ÆäжÔز¢ÖØÆôµçÄÔ¡£
- ¹¦ÄÜÎÊÌâ
- NETGEAR VPN ¿Í»§¶ËÖÐȱʡµÄ SA Lifetime ÊÇ䶨ÒåµÄ£¬Èô·¢ÏÖÄúµÄVPNËíµÀ½¨Á¢ºó»áƵ·±µÄÖжϿÉΪ´Ë²ÎÊýÉ趨һ¸öÊýÖµ£¨Ðë²Î¿¼¿Í»§¶ËÁ¬½ÓµÄVPNÍø¹ØµÄSA²ÎÊýÖµÀ´ÉèÖã©¡£
- ½÷ÓÃVirtual Adapter£¬³ý·ÇÄúÈ·¶¨ÄúÐèҪʹÓÃËü¡£
- ÈôÄúµÄµçÄÔÆôÓÃÁËÈí¼þ·À»ðǽ£¬Èç Norton Firewall¡¢ZoneAlarm µÈ£¬ÄÇô VPN ¿Í»§¶Ë¿ÉÄÜÎÞ·¨·¢ÆðVPNÁ¬½Ó£¬¿É½«Èí¼þ·À»ðǽ¹ØµôºóÖØÊÔ¡£
- ÈôÓëVPNÍø¹ØÉ豸³É¹¦½¨Á¢VPNºó£¬ÎÞ·¨Í¨¹ýÆä¾ÖÓòÍøµçÄÔµÄIPµØÖ··ÃÎʵ½¹²Ïí×ÊÔ´£¬ÇëÈ·Èϱ»·ÃÎʵĵçÄԹصôÁËËùÓеÄÈí¼þ·À»ðǽ£¬ÈçNorton¡¢ZoneAlarm¡¢ÈðÐÇ¡¢Windows Á¬½Ó·À»ðǽµÈ¡£
- °²×°ÎÊÌâ
- ´ËFAQ¶ÔÄãÓаïÖúÂð£¿[ ÊÇ | ·ñ ] | ÊÕ²Ø | À´Ô´£ºMyprice¼Û¸ñÍø
- 17.ÈçºÎÉèÖà Netgear µÄ FVX538Óë FVS318v3µÄ½øÐÐ VPN Á¬½Ó
-
-
- ´ð°¸£º
-
- Ó¦Óû·¾³£ºÆóÒµ·Ö²¿Óë×ܲ¿½¨Á¢VPNËíµÀ£¬¼´¿Éͨ¹ýÁ¬½ÓÀ´·ÃÎÊË«·½µÄ¾ÖÓòÍø×ÊÔ´¡£
- ÍøÂçÉ豸״¿ö£º×ܲ¿£¨FVX538£¬¹Ì¶¨IPµØÖ·£©£¬·Ö²¿£¨FVS318v3£¬¶¯Ì¬IPµØÖ·£©¡£
- ÍøÂçÐèÇó£º×ܲ¿Óë·Ö²¿¶¼ÄÜÕý³£½ÓÈëInternet£¬×ܲ¿Ê¹Óù̶¨IP£¬·ÖÖ§»ú¹¹Ê¹Óö¯Ì¬ADSL
- Ó²¼þÏà¹ØÐÅÏ¢£º
Router
Model
Firmware
WAN IP
LAN IP
LAN Netmask
Central
FVX538
V1.6.49
202.12.13.11
192.168.0.1
255.255.255.0
Branch
FVS318v3
V3.0.22
¶¯Ì¬µÄIP
192.168.1.1
255.255.255.0
Ò»£ºCentral FVX538ÅäÖùý³Ì
1£ºÊ×ÏȽøÈë·ÓÉÆ÷µÄWEB¹ÜÀíÒ³Ã棬ÔÚ`WAN Setup` / `WAN 1 ISP` ÏÂÅäÖÃÆä¹ãÓò¿Ú£¬Èçͼ£º
2£ºÔÚWEB¹ÜÀíÒ³ÃæÖÐÑ¡Ôñ`VPN` / `IKE Policies` µã`Add` Ìí¼ÓÒ»ÌõÁ¬½ÓBranch FVS318v3µÄIKE Policies£¬ÅäÖÃÈçͼ£º
3£º½øÈë`VPN` / `VPN Policies` Ï£¬µã`Add Auto Policy` °´Å¥´´½¨Á¬½ÓBrance FVS318v3µÄÒ»Ìõ²ßÂÔ£¬ÅäÖÃÈçͼ¡£
¶þ£ºBranch FVS318v3ÅäÖùý³Ì
1£ºÊ×ÏȽøÈëFVS318v3µÄWEB¹ÜÀíÒ³Ã棬ÔÚbasic settingsÏÂÅäÖùãÓò¿Ú¡£
2£º½øÈë`VPN` / `IKE Policies` Ï£¬µã`Add` °´Å¥Ð½¨Ò»Ìõ²ßÂÔ£¬ÅäÖÃÈçͼ¡£
4£º½øÈë`VPN` / `VPN Policies` Ï£¬µã`Add Auto Policy` °´Å¥Ð½¨Ò»Ìõ²ßÂÔ£¬ÅäÖÃÈçͼ¡£
Èý£º²âÊÔÁ¬½Ó
- ÔÚDOSÃüÁîÌáʾ·ûÏ£¬FVX538¶Ë¿ÉÒÔPINGͨ192.168.1.X£¬FVS318v3¶Ë¿ÉÒÔPINGͨ192.168.0.X¡£
- ´ËFAQ¶ÔÄãÓаïÖúÂð£¿[ ÊÇ | ·ñ ] | ÊÕ²Ø | À´Ô´£ºMyprice¼Û¸ñÍø
- 18.ÈçºÎÅäÖà 'Netgear ProSafe VPN Client Á¬½Óµ½ FVL328 or FVS328¡¯
-
-
- ´ð°¸£º
-
ÒÔÏÂΪͨ¹ý°ÎºÅÉÏÍø»òÒò¶¨IPÉÏÍø·½Ê½µÄÇé¿öÏ£¬ÈçºÎͨ¹ý Netgear ProSafe VPN ¿Í»§¶ËÈí¼þÓë FVL328 »ò FVS328¼ä½¨Á¢Ò»Ìõ VPN ËíµÀ.
- ÒÔϲâÊÔÔÚFVL328 f/w 1.5.9 ¡¢FVS328 f/w 1.0ºÍNetgear VPN client software version 10ÉÏͨ¹ý¡£
- ¸üÔçÆڵİ汾»ò×îа汾ҲÊÇÀàËÆÅäÖÃ.
ÇëÔÚ¿ªÊ¼ÅäÖÃÇ°£¬ÐèÏÈÁ˽âÒÔÏÂÐÅÏ¢:
- ·ÓÉÆ÷µÄ¹ãÓò¿ÚIPµØÖ·»òÓòÃû£¨FQDN£©£¬ÔÚMaintenance > Router StatusÏ¿ɲ鿴µ½Internet¶Ë¿ÚIPµØÖ·¡£Èç¹û·ÓÉÆ÷ÊǶ¯Ì¬»ñÈ¡IPµØÖ·µÄ£¬ÇëÏÈÔÚ Advanced> Dynamic DNSÖÐÉèÖÃ×ÔÒѵĶ¯Ì¬ÓòÃû£¬·ñÔòÏ´ÎÆô¶¯Â·ÓÉÆ÷ºó£¬Internet ¶Ë¿ÚµÄIPµØÖ·½«»á¸Ä±ä¶øµ¼ÖÂVPN¿Í»§¶ËÎÞ·¨Á¬½Ó¡£
- ±¾µØ¾ÖÓòÍøµÄIPµØÖ·¶Î£¬Â·ÓÉÆ÷ȱʡÊÇ192.168.0.0µÄµØÖ·¶Î. ÔÚ Advanced > LAN IP SetupÏ¿ɲ鿴µ½LAN¶Ë¿ÚµÄIPµØÖ·¡£
·ÓÉÆ÷ÅäÖãº
- µÇ¼½ø FVL328 (or FVS328)¡£
- ÉèÖà IKE Policies:VPN > IKE Policies¡£ÔÚ IKE Policies MenuÏÂÑ¡Ôñ¡¯Add¡¯¡£
- ÔÚPolicy NameºóÊäÈëÒ»¸ö²ßÂÔÃû. ½¨ÒéÊäÈëÒ»¸öÕë¶Ô½ÓÈë¶Ë·½Ê½ÇÒÈÝÒ×Ã÷Á˵ÄÃû×Ö£¬´ËÀýÖÐÎÒÃÇÑ¡Ôñ ¡®VPNClient¡¯¡£
- Ñ¡Ôñ Direction/Type > Remote Access¡£
- Ñ¡Ôñ Exchange Mode > Aggressive Mode¡£
- ÔÚLocal Identity Type ÏÂÀÁбíÖÐ, Ñ¡Ôñ WAN IP Address or Fully Qualified Domain Name¡£
- Èç¹ûÑ¡Ôñ Fully Qualified Domain Name, È·±£ÄãµÄ¶¯Ì¬ÓòÃû£¨FQDN£©ÄÜÕýÈ·½âÎöΪÄ㵱ǰµÄWAN IPµØÖ·£¬²¢ÇÒÔÚLocal Identity Data. ºóÃæÊäÈëÄãµÄ¶¯Ì¬ÓòÃû¡£
- Ñ¡Ôñ Remote Identity Type > Fully Qualified Domain Name¡£
- Ñ¡ÔñºÏÊʵÄFQDNÔÚ Remote Identity Data.Ñ¡ÏîÖУ¬´ËFQDNÔÚÅäÖÿͻ§¶ËÈí¼þʱҲͬʱ»áÓõ½¡£
ÅäÖà IKE SA ²ÎÊýʱ, Ñ¡Ôñ¼ÓÃÜËã·¨(ÀýÈç3DES) ºÍÑéÖ¤Ëã·¨(ÀýÈçMD5).µ±ÄãÅäÖÿͻ§¶ËµÄʱºò£¬ÐèÒªÅäÖÃΪÏàͬµÄËã·¨¡£
ÔÚ Pre-shared Key ºóÃæÊäÈëÃÜÔ¿£¬µ±ÅäÖÿͻ§¶ËʱҲÐèÒªÏàͬµÄÃÜÔ¿¡£- Ñ¡Ôñ Diffie-Hellman (DH) Group > Group2 (1024 Bits)¡£
- ÔÚ SA Life Time ºóÊäÈë180¡£
- Íê³Éºó£¬µã»÷Apply¡£
- ÉèÖà VPN Policies:VPN> VPN Policies . ÔÚVPN Policies Menu ÏÂÑ¡Ôñ¡¯ Add Auto Policy¡¯¡£
- ¸ø´Ë VPN policyÆð¸ö²ßÂÔÃû¡£
- ÔÚ IKE policy ºóÑ¡Ôñ¸Õ²Å½¨Á¢µÄIKE²ßÂÔÃû¡£
- ÔÚ Remote VPN EndpointºóÃæÑ¡ÔñIP Address ¡£
- ÔÚ Address Data ºóÊäÈë 0.0.0.0.
- SA Life Time ºóÑ¡Ôñ300ÃëºÍ0 Kybtes¡£
- PFS Key Group²¿·ÖÑ¡ÔñIPSec PFS ºÍGroup 2 (1024 Bit)¡£
- ÔÚ Traffic SelectorÑ¡Ï·Ý£¬Local IP > Subnet address ÖÐÅäÖÃΪ±¾¾ÖÓòÍøÄÚµÄIPµØÖ·¶Î¡£
- ÅäÖÃRemote IP > Any¡£
- Ñ¡Ôñ ESP Configuration > Enable Encryption ²¢ÇÒÑ¡ÔñÏàÓ¦µÄ¼ÓÃÜËã·¨¡£
Ñ¡Ôñ Enable Authentication ²¢ÇÒÑ¡ÔñÏàÓ¦µÄÑéÖ¤Ëã·¨. ÄãÔÚÅäÖà VPN ¿Í»§¶ËÈí¼þʱÐèҪѡÔñÏàͬµÄ¼ÓÃܺÍÑéÖ¤Ëã·¨£¬ÕâÀïÎÒÃÇÑ¡Ôñ3DES ºÍ MD5¡£
- Íê³Éºó£¬µã»÷Apply¡£
- ´ËFAQ¶ÔÄãÓаïÖúÂð£¿[ ÊÇ | ·ñ ] | ÊÕ²Ø | À´Ô´£ºMyprice¼Û¸ñÍø