Netopia 4541 Manuel D’Utilisation

Page de 209
Virtual Private Networks (VPNs)   10-15
Enter the Remote IP Address and Remote IP Mask for the host to which you want to tunnel.
Encryption Support
Encr yption is a method for altering user data into a form that is unusable by anyone other than the intended 
recipient. The recipient must have the means to decr ypt the data to render it usable to them. The encr yption 
process protects the data by making it difficult for any third par ty to get at the original data.
Netopia PPTP is fully compatible with Microsoft Point-to-Point Encr yption (MPPE) data encr yption for user data 
transfer over the PPTP tunnel. Microsoft Windows NT Ser ver provides MPPE encr yption capability only when 
Microsoft Challenge Handshake Authentication Protocol (MS-CHAP) is enabled. Netopia complies with this 
feature to allow MPPE only when MS-CHAP is negotiated. MS-CHAP and MPPE are user-selectable options in the 
PPTP Tunnel Options screen. If either the client or the ser ver side specifies encr yption, then encr yption 
becomes mandator y for both.
Netopia’s ATMP implementation suppor ts Data Encr yption Standard (DES) data encr yption for user data 
transfer over the ATMP tunnel between two Netopia routers. The encr yption option, none or DES, is a selectable 
option in the ATMP Tunnel Options screen.
MS-CHAP V2 and 128-bit strong encryption
Notes:
The Netopia 4541/4542 suppor ts 128-bit (“strong”) encr yption when using PPTP tunnels.
ATMP does not have an option of using 128-bit MPPE. If you are using ATMP between two Netopia routers 
you can optionally set 56-bit DES encr yption.
When you choose MS-CHAP as the authentication method for a PPTP tunnel, the Netopia router will star t 
negotiating MS-CHAPv2. If the router or VPN adapter client you are connecting to does not suppor t 
MS-CHAPv2, the Netopia router will fall back to MS-CHAPv1, or, if the router or VPN adapter client you are 
connecting to does not suppor t MPPE at all, the PPP session will be dropped. This is done automatically 
                            IP Profile Parameters
         Address Translation Enabled:       Yes
         NAT Map List...                    Easy-PAT
         NAT Server List...                 Easy-Servers
         Local WAN IP Address:              0.0.0.0
         Remote IP Address:                 173.167.8.10
         Remote IP Mask:                    255.255.0.0
         Filter Set...
         Remove Filter Set
         RIP Profile Options...