Differences
This shows you the differences between two versions of the page.
Both sides previous revision Previous revision Next revision | Previous revision | ||
draytek_site [2021/11/16 16:16] rafi |
draytek_site [2021/11/16 17:10] (current) rafi |
||
---|---|---|---|
Line 1: | Line 1: | ||
This article describes how to configure a VPN tunnel on a DrayTek Vigor 3900 device. | This article describes how to configure a VPN tunnel on a DrayTek Vigor 3900 device. | ||
- | * Unordered List ItemConfiguring | + | * Configuring |
* Configuring the tunnel on the DrayTek Management Interface | * Configuring the tunnel on the DrayTek Management Interface | ||
Line 12: | Line 12: | ||
2. In the left panel, select VPN and Remote Access, then select VPN Profiles. Select the add to create a new profile. | 2. In the left panel, select VPN and Remote Access, then select VPN Profiles. Select the add to create a new profile. | ||
- | {{: | + | |
+ | ---- | ||
+ | |||
+ | {{:: | ||
+ | |||
+ | ---- | ||
3. Under the Basic tab, fill in the following information: | 3. Under the Basic tab, fill in the following information: | ||
- | {{:3600110728791-1copy.jpg? | + | |
+ | {{3600110728791-1copy.jpg? | ||
**Auto Dial-Out: Enable;** Always Dial-Out | **Auto Dial-Out: Enable;** Always Dial-Out | ||
Line 31: | Line 38: | ||
{{:: | {{:: | ||
+ | |||
**IKE Protocol:** IKEv1 | **IKE Protocol:** IKEv1 | ||
+ | |||
**IKE Phase 1:** Main Mode | **IKE Phase 1:** Main Mode | ||
+ | |||
**Auth Type:** PSK | **Auth Type:** PSK | ||
+ | |||
**Pre-shared Key:** Please reach out to Privatise support for this. | **Pre-shared Key:** Please reach out to Privatise support for this. | ||
+ | |||
**Security Protocol:** ESP | **Security Protocol:** ESP | ||
Line 41: | Line 53: | ||
{{:: | {{:: | ||
+ | |||
{{:: | {{:: | ||
- | **Phase 1 Key Lifetime:** 28800 seconds | ||
- | **Phase 2 Key Lifetime: | + | **Phase 1 Key Lifetime:** 86400 seconds |
+ | |||
+ | **Phase 2 Key Lifetime: | ||
**Perfect Forward Secrecy Status:** Enable | **Perfect Forward Secrecy Status:** Enable | ||
+ | |||
**DPD Status:** Enable | **DPD Status:** Enable | ||
Line 77: | Line 92: | ||
5. Fill in the following information in the GRE section: | 5. Fill in the following information in the GRE section: | ||
+ | |||
{{:: | {{:: | ||
+ | |||
**Enable GRE Function:** Disable | **Enable GRE Function:** Disable | ||
Line 85: | Line 102: | ||
6.Fill in with the following information in the Proposal section: | 6.Fill in with the following information in the Proposal section: | ||
+ | |||
{{:: | {{:: | ||
+ | |||
**IKE Phase 1 Proposal:** AES 256 | **IKE Phase 1 Proposal:** AES 256 | ||
Line 92: | Line 111: | ||
**IKE Phase 1 Authentication: | **IKE Phase 1 Authentication: | ||
- | **IKE Phase 2 Proposal: | + | **IKE Phase 2 Proposal: |
**IKE Phase 2 Authentication: | **IKE Phase 2 Authentication: | ||
Line 99: | Line 118: | ||
7. Leave the checkbox unmarked in the Multiple SAs section. Make sure to enable the profile and click Apply. | 7. Leave the checkbox unmarked in the Multiple SAs section. Make sure to enable the profile and click Apply. | ||
+ | |||
{{:: | {{:: | ||
+ | |||
8. If the tunnel is up, the profile will be green in the Connection Management tab: | 8. If the tunnel is up, the profile will be green in the Connection Management tab: | ||
- | { ::360010936219screenshot2020-04-13at113958.png? | + | |
+ | {{360010936219screenshot2020-04-13at113958.png? |