Multitech RouteFinder RF850, RouteFinder RF860 Reference Manual

IPSec VPN Client
and the
RouteFinder® RF850/RF860
Setup Examples
Reference Guide
Copyright and Technical Support
IPSec VPN Setup Client and the RouteFinder 850/860 Setup Examples Reference Guide PN S000433B Revision B
Copyright © 2007-2008
This publication may not be reproduced, in whole or in part, without prior expressed written permissio n from Multi­Tech Systems, Inc. All rights reserved.
Multi-Tech Systems, Inc. makes no representations or warranties with respect to the contents hereof and specifically disclaims any implied warranties of merchantability or fitness for any particular purpose. F urthermore, Multi-Tech Systems, Inc. reserves the right to revise this publication and to make changes from time to time in the content hereof without obligation of Multi-Tech Systems, Inc. to notify any person or organization of such revisions or changes.
Revision Date Description
A 04/05/07 Initial release with RouteFinder software 3.32. Updated the Technical Support
contract list.
B 05/07/08 Updated for software 3.34 and some minor edits.
Trademarks
The Multi-Tech logo is a registered trademark of Multi-Tech System, Inc. Windows is a trademark of Microsoft. All other trademarks are owned by their respective companies.
World Headquarters
Multi-Tech Systems, Inc. 2205 Woodale Drive Mounds View, Minnesota 55112 Phone: 763-785-3500 or 800-328-9717 Fax: 763-785-9874 Internet Address: http://www.multitech.com
Technical Support Country By Email By Phone
Europe, Middle East, Africa: support@multitech.co.uk +44 118 959 7774 U.S., Canada, all others: support@multitech.com 800-972-2439 or 763-717-5863
Multi-Tech Systems, Inc. IPSec VPN and RF850/860 Setup Examples – A Reference Guide (S000433B) 2
Table of Contents
Contents
Chapter 1 – Non-NAT IPSec and RouteFinder Setup Example ................................................................................4
Set Up a VPN Client Using IPSec VPN Client Software and a RouteFinder ...................................................4
Chapter 2 – NAT Setup Example with IPSec and RouteFinder ..............................................................................10
Set Up a VPN Client Using IPSec VPN Client Software and a RouteFinder .................................................10
Chapter 3 – A Reference Table of Commonly Supported Subnets........................................................................17
Multi-Tech Systems, Inc. IPSec VPN and RF850/860 Setup Examples – A Reference Guide (S000433B) 3
Chapter 1 – Non-NAT IPSec and RouteFinder Setup Example
VPN Client Setup
Chapter 1 – Non-NAT IPSec and
RouteFinder Setup Example
Set Up a VPN Client Using IPSec VPN Client Software and a RouteFinder
First, in this non-NAT example, set up the VPN client using the IPSec VPN Client software. Then set up the VPN tunnel for the RouteFinder using the RouteFinder software.
Step 1 – VPN Client Side Set Up (Phase 1)
1. Open the IPSec VPN Client software.
2. Right click on RouteFinder Client VPN Configuration and select New Phase 1.
3. Enter a name for your connection in the Name field.
4. Choose Any for the client Interface if your IP address is dynamic or the IP address provided
by your ISP if Static (e.g., 65.126.90.250).
5. In the Remote Gateway field, enter the IP address of the VPN WAN for your Remote
Gateway (e.g., 65.126.90.248).
6. Enter the Shared Secret in Preshared Key for your network (the Secret has to match on both
ends). Then Confirm the shared secret by retyping the shared secret.
7. For IKE Authentication choose MD5.
8. For Key Group choose DH1024.
Multi-Tech Systems, Inc. IPSec VPN and RF850/860 Setup Examples – A Reference Guide (S000433B) 4
Chapter 1 – Non-NAT IPSec and RouteFinder Setup Example
Step 2 – VPN Client Side Set Up (Phase 2)
1. Start Phase 2 by right clicking on the name of your VPN Client you created in Phase 1.
2. The VPN Client address will be set to 0.0.0.0 unless you have a Static IP address (e.g.,
65.126.90.250).
3. The Address type is the type of setup on the host side. If it’s a network, then choose
Subnet address from the drop down list box and enter the Remote LAN address (e.g.,
192.168.25.0) and the Subnet Mask (e.g., 255.255.255.0). If it’s a single IP address, change it to that address.
4. For ESP Authentication choose MD5.
5. Accept the default Tunnel Mode.
6. For PFS Group choose DH1024.
VPN Client Setup
Multi-Tech Systems, Inc. IPSec VPN and RF850/860 Setup Examples – A Reference Guide (S000433B) 5
Chapter 1 – Non-NAT IPSec and RouteFinder Setup Example
Step 3 – Set Up a RouteFinder
Step 3.1 – Network & Services > Network
1. Login to your RouteFinder software and go to the Networks & Services > Network
screen.
2. Click the Add button to open the fields for entering your network information.
3. Create a new network name for the VPN Client by entering a Name, IP Address, and
Subnet Mask. For this example, enter the following:
Name: VPN-Client IP Address: 65.126.90.250 Subnet Mask: 255.255.255.255
Note: The same address/mask pair should not be prese nt in the current list displayed on
the screen.
4. Click the Add button to add "VPN-Client" to the network list. It will display at the bottom of
the screen.
RouteFinder Setup
Multi-Tech Systems, Inc. IPSec VPN and RF850/860 Setup Examples – A Reference Guide (S000433B) 6
Loading...
+ 12 hidden pages