3 vpn server, The speedtouch™ as vpn server, Configuration procedure – RCA 608WL User Manual
Page 199: Buttons, Local trusted network, Vpn server, Chapter 5

Chapter 5
Expert Configuration
E-DOC-CTC-20041126-0013 v1.0
197
5.7.3 VPN Server
The SpeedTouch™ as
VPN Server
In a VPN client-server scenario, the VPN server is always the responder in the IKE
negotiations. Various VPN clients can dial in to a VPN server, since it supports
multiple simultaneous VPN connections. A VPN server does not know a priori which
remote Security Gateway will attempt to set up a VPN connection. In time, new
users may join the VPN. It is an advantage that the SpeedTouch™ VPN server
requires no modifications to its configuration when new clients are added to the
VPN. The SpeedTouch™ can establish a secure connection with any Remote
Gateway that meets the VPN settings, regardless its location in the public network.
The use of the Extended Authentication protocol can optionally be configured. In this
case, a list of authorized users is composed and stored in the SpeedTouch™.
Configuration
procedure
Perform the following steps to configure your VPN server:
1
Select VPN > VPN Server.
2
Fill out the various parameter fields in the VPN Server web page.
3
Select the IKE Authentication method. Either Preshared Key or Certificate
Authentication
can be selected.
4
Click Apply to confirm the data and Save All to make the configuration
permanent.
Optional: If you use the Extended Authentication protocol, you have to compose an
authorized users list.
Buttons
Local Trusted Network
The Local Trusted Network open to Remote Clients describes which part of the
local network you want to make accessible for remote VPN clients. The Trusted
Network IP values are used during the Phase 1 negotiations, and must comply with
the values configured in the remote VPN client.
Click...
To...
Specify Additional Networks
reveal additional fields where you can
specify additional descriptors for the
local network open to remote terminals
via a VPN connection.
Use Preshared Key Authentication
reveal additional parameter fields
required for the configuration of
Preshared Key Authentication.
Use Certificate Authentication
reveal additional parameter fields
required for the configuration of Certifi-
cate Authentication.
Specify Additional Descriptors
reveal additional fields where you can
specify alternative Security Descriptors.
Apply
confirm the VPN server settings.
Clear All
clear all VPN server settings.