Vigor3910 Series User’s Guide
vi
II-6-4 BGP................................................................................................................................ 150
II-6-4-1 Basic Settings........................................................................... 151
II-6-4-2 Static Network ......................................................................... 152
Application Notes..................................................................................................................... 153
A-1 How to Customize a Secure Route between VPN Router and Remote Router by Using
Route Policy ...................................................................................... 153
Part III VPN .....................................................................................................................157
III-1 VPN and Remote Access........................................................................................................ 158
Web User Interface.................................................................................................................. 158
III-1-1 Remote Access Control................................................................................................. 159
III-1-2 PPP General Setup....................................................................................................... 160
III-1-3 IPsec General Setup ..................................................................................................... 162
III-1-4 IPsec Peer Identity ........................................................................................................ 164
III-1-5 OpenVPN ...................................................................................................................... 166
III-1-5-1 General Setup ......................................................................... 166
III-1-5-2 Client Config........................................................................... 167
III-1-6 Remote Dial-in User ...................................................................................................... 168
III-1-7 LAN to LAN.................................................................................................................... 171
III-1-8 VPN Trunk Management............................................................................................... 182
III-1-9 Connection Management .............................................................................................. 191
Application Notes..................................................................................................................... 193
A-1 How to Build a LAN-to-LAN VPN Between Remote Office and Headquarter via IPsec
Tunnel (Main Mode) ............................................................................. 193
III-2 SSL VPN ................................................................................................................................. 198
Web User Interface.................................................................................................................. 199
III-2-1 General Setup ............................................................................................................... 199
III-2-2 User Account................................................................................................................. 200
III-3 Certificate Management.......................................................................................................... 204
Web User Interface.................................................................................................................. 205
III-3-1 Local Certificate............................................................................................................. 205
III-3-2 Trusted CA Certificate ................................................................................................... 209
III-3-3 Certificate Backup ......................................................................................................... 211
III-3-4 Self-Signed Certificate................................................................................................... 212
Part IV Security ..............................................................................................................213
IV-1 Firewall.................................................................................................................................... 214
Web User Interface.................................................................................................................. 216
IV-1-1 General Setup............................................................................................................... 216
IV-1-2 Filter Setup.................................................................................................................... 221
IV-1-3 Defense Setup .............................................................................................................. 230
IV-1-3-1 DoS Defense............................................................................ 230
IV-1-3-2 Spoofing Defense...................................................................... 233
IV-1-4 Diagnose....................................................................................................................... 233