179
E-DOC-CTC-20051017-0151 v1.0
Chapter 5
Expert Configuration
5.7.3 VPN Server
The SpeedTouch™ as
VPN Server
In a VPN client-server scenario, the VPN server is always the responder in the IKE
negotiations. Various VPN clients can dial in to a VPN server, since it supports
multiple simultaneous VPN connections. A VPN server does not know a priori which
remote Security Gateway will attempt to set up a VPN connection. In time, new
users may join the VPN. It is an advantage that the SpeedTouch™ VPN server
requires no modifications to its configuration when new clients are added to the
VPN. The SpeedTouch™ can establish a secure connection with any Remote
Gateway that meets the VPN settings, regardless its location in the public network.
The use of the Extended Authentication protocol can optionally be configured. In
this case, a list of authorized users is composed and stored in the SpeedTouch™.
Configuration
procedure
Perform the following steps to configure your VPN server:
1 Select VPN > VPN Server.
2 Fill out the various parameter fields in the VPN Server web page.
3 Select the IKE Authentication method. Either Preshared Key or Certificate
Authentication can be selected.
4 Click Apply to confirm the data and Save All to make the configuration
permanent.
Optional: If you use the Extended Authentication protocol, you have to compose an
authorized users list.