cau hinh vpn draytek

DrayTeK Syslog Tool Download tại: King Tech Tricks. 2. Tắt hết firewall và chương trình diệt virus trên máy tính. 3. Giải nén và chạy file syslogRD.exe. 4. Cấu hình lưu Syslog trên Vigor Router. Vào System Maintenance >> Syslog/ Mail Alert, tại tab Syslog Access Setup. Syslog Access Setup: Chọn Enable. 1. Go to VPN and Remote Access >> VPN Profiles >> IPsec, click Add to create a VPN profile, give a name of profile and enable it. 2. In the Basic tab, type the IP range of the local subnet you want to link to the FortiGate router in Local IP/Subnet Mask; type the LAN IP of the FortiGate router in Remote IP/Subnet Mask; type WAN IP of FortiGate DVCOM Technology is the authorized distributor for DrayTek in UAE. For information or inquiries related to DrayTek, please email us at sales@datavoiz.com or Vay Tiền Cấp Tốc Online. © 2023 Copyright DrayTek Corp. Sitemap Terms & Conditions Privacy EN 台灣/繁中 Chuyên mục Windows VPN đến Vigor3900 / 2960 20 - 03 - 2020 17325 lượt xem Chuẩn bị - Đăng ký và sử dụng dịch vụ tên miền động DrayDDNS A. Trên Vigor2960/3900 1. Tạo Account VPN Vào User Management >> User Profile, nhấn Add tạo user Username Điền Username VPN Check Enable Password Điền Password VPN DHCP From Chọn LAN cấp DHCP cho User VPN nếu hệ Router không cấp DHCP thì phải điền IP tĩnh cho User VPN tại Static IP Address Nhán sổ PPTP/L2TP/SSL/PPPoE/ OpenVPN Server General Setup SSL VPN chọn Enable Nhấn Apply 2. Cho phép kết nối SSL VPN Vào VPN and Remote Access >> Remote Access Control Check Enable SSL VPN Service Nhấn Apply 3. Đổi port SSL VPN Vào System Maintemance >>Access Control Tại Management Port Setup SSL VPN port đổi port SSL VPN Nhấn Apply B. Trên thiết bị Client 1. Cài đặt phần mềm DrayTek SmartVPN Download bản Smart VPN Client tại 2. Khởi động phần mềm Nhấn “Add” tạo Profile mới Profile Name Đặt tên Profile Type Chọn mã hóa “SSL VPN Tunnel” IP or Host Name Điền IP WAN hoặc tên miền Port điền port SSL VPN đã đổi trên Vigor2912 ví dụ 4434 Username/password điền Username/password đã cấu hình trên router Chọn “Advance Options” Fast SSL chọn “ON” Nhấn More ​ Nhấn “OK” một lần nữa lưu profile VPN ​ Lưu ý Khi cần truy cập các lớp mạng subnet khác bên trong DrayTek, thì phải thêm các lớp mạng đó vào phần Advances Options >> "More" trên SmartVPN 3. Thực hiện kết nối Chọn Profile “SSL VPN” đã tạo>> nhấn “Connect” Kiểm tra lại Username/ Password đã cấu hình Kiểm tra trạng thái kết nối Điện thoại sử dụng SmartVPN client Bước 1 Mở ứng ứng dụng SmartVPN client >> nhấn biểu tượng “+” để tạo profile Bước 2 Điền thông tin VPN server Description Đặt tên profile Server Điền IPWAN/ tên miền router VPN server Port 443 port SSL VPN Chọn “Automatically get IP and DNS server Address" Chọn Save Bước 3 Thực hiện VPN Chọn profile VPN đã tạo để xuất hiện hộp thoại cấu hình account VPN Username /password Điền username/ password đã tạo trên VPN server Chọn “Remember password” nếu muốn lưu password này cho các lầ kết nối sau Chọn “Dial” 6. Kiểm tra kết nối Trên client, thực hiện ping địa chỉ IP LAN router, hoặc vào VPN and Remote Access >> Connection Management kiểm tra trạng thái kết nối Hãy liên lạc với chúng tôi để được hỗ trợ Văn phòng TPHCM 028 3925 3789 Chi nhánh miền Bắc 024 3781 5089 Chi nhánh miền Trung 0236 367 9515 Hotline Hỗ Trợ Kỹ Thuật 1900 633 641 WireGuard is a secure, fast, and modern VPN Protocol. A WireGuard VPN connection is made by exchanging public keys and intends to be considerably more performant than OpenVPN. We support the WireGuard VPN Dial-Out on Vigor2962/3910 routers since firmware version This article will show how to establish a WireGuard VPN LAN to LAN tunnel between Vigor2962 and Vigor3910. 1. On the VPN server, create a WireGuard VPN LAN to LAN profile Go to VPN and Remote Access >> LAN to LAN, click on an available index to edit the profile. 2. Edit the profile as follows Check Enable this profile Give it a Profile Name Select Dial-In for Call Direction Leave the Idle Timeout as 300 seconds optional Select WireGuard as the Allowed VPN Type The WireGuard Settings window will pop up after selecting WireGuard. Click Generate a Key Pair for [Interface]. It will generate the keys for the VPN server. Copy the Public Key to a text file. The Public Key is required to be configured in the WireGuard VPN Client router. Leave Public Key for [Peer] as empty. It should be configured after the WireGuard VPN Client router generates the keys on its WireGuard VPN profile. Click Generate the Pre-Shared Key then copy the Pre-Shared Key to a text file. The Pre-Shared Key cannot be any string, so please use the Generate button to produce the key. Configure the Keepalive setting as 60 seconds. The Keepalive setting is to suggest the WireGuard VPN client send a keepalive packet with a regular interval to avoid the UDP session being closed by the NAT router in front of it. The setting can be modified according to the UDP session timeout of the NAT router. Click X to exit the WireGuard Settings window. Enter the Local Network IP/ Mask settings. Enter the Remote Network IP/ Mask settings. Select Routing for the Mode and click OK to save this VPN profile. 3. On the VPN client, create a WireGuard VPN LAN to LAN profile Go to VPN and Remote Access >> LAN to LAN, click on an available index to edit the profile. Check Enable this Profile Give it a Profile Name Select Dial-Out for Call Direction Select WireGuard as the VPN protocol and enter the VPN server’s IP or Domain Name. Click Generate a Key Pair for [Interface]. It will generate the keys for the VPN client. Copy the Public Key to a text file. The Public Key will be configured in the WireGuard VPN Server router later. Enter the WireGuard VPN Server’s Public Key copied in step2 in the Public Key for [Peer] field. Enter the Pre-Shared Key that the WireGuard VPN Server generated in step2. Configure the Keepalive setting as 60 seconds. The Keepalive setting is to make the WireGuard VPN client send a keepalive packet with a regular interval to avoid the UDP session being closed by the NAT router in front of it. The setting can be modified according to the UDP session timeout of the NAT router. Enter the Local Network IP/ Mask settings. Enter the Remote Network IP/ Mask settings. Select Routing for the Mode and click OK to save this VPN profile. 4. Go to the VPN Server’s WireGuard VPN Settings page again and paste the VPN Client’s Public Key. Click X to exit the window then click OK to save the setting. 5. On the VPN client router, go to VPN and Remote Access >> Connection Management, select the WireGuard VPN profile and click Dial to activate the tunnel. We may ping a remote IP to check if the traffic over WireGuard VPN works. When using WireGuard VPN in NAT mode We only need to add the settings below for creating the WireGuard VPN in NAT mode. 1. On the VPN server, enter the IP that will assign to the VPN client in the Client IP Address field. 2. On the VPN client, enter the IP that the server gives in the IP Address field. 3. On the VPN client, select NAT for the Mode in the TCP/IP Network settings. Was this helpful? Sorry about that. Contact Support if you need further assistance, or leave us some comments below to help us improve.

cau hinh vpn draytek