D-Link DSR-Series User Manual 108
Section 7 - VPN
IPSec VPN
Policies
Path: VPN > IPSec VPN > Policies
An IPsec policy is between this router and another gateway or this router and an IPsec client on a remote host.
The IPsec mode can be either tunnel or transport depending on the network being traversed between the two
policy endpoints.
• Transport: This is used for end-to-end communication between this router and the tunnel
endpoint, either another IPsec gateway or an IPsec VPN client on a host. Only the data payload
is encrypted and the IP header is not modied or encrypted.
• Tunnel: This mode is used for network-to-network IPsec tunnels where this gateway is one
endpoint of the tunnel. In this mode the entire IP packet including the header is encrypted
and/or authenticated.
When tunnel mode is selected, you can enable NetBIOS and DHCP over IPsec. DHCP over IPsec allows this router
to serve IP leases to hosts on the remote LAN. As well in this mode you can dene the single IP address, range of
IPs, or subnet on both the local and remote private networks that can communicate over the tunnel.
To congure the radio settings:
1. Click VPN > IPSec VPN > Policies.
2. Click Add new IPSec Policy. Fill out the General section which you will name the VPN, select policy
type, dene the tunnel type, and dene endpoints.