Netgear UTM25-100NAS ユーザーズマニュアル

ページ / 480
ProSecure Unified Threat Management UTM10 or UTM25 Reference Manual
B-16
Network Planning for Dual WAN Ports (UTM25 Only)
v1.0, September 2009
VPN Telecommuter (Client-to-Gateway Through a NAT Router)
The following situations exemplify the requirements for a remote PC client connected to the 
Internet with a dynamic IP address through a NAT router to establish a VPN tunnel with a gateway 
VPN firewall such as an UTM at the company office:
Single gateway WAN port
Redundant dual gateway WAN ports for increased reliability (before and after rollover)
Dual gateway WAN ports for load balancing
VPN Telecommuter: Single Gateway WAN Port (Reference Case)
In a single WAN port gateway configuration, the remote PC client at the NAT router initiates the 
VPN tunnel because the IP address of the remote NAT router is not known in advance. The 
gateway WAN port must act as the responder.
The IP address of the gateway WAN port can be either fixed or dynamic. If the IP address is 
dynamic, you must use a FQDN. If the IP address is fixed, a FQDN is optional.
Note: The telecommuter case presumes the home office has a dynamic IP address and 
NAT router.
Figure B-17