WedgeARP™ Secure Home Office Configuration - For IKEv2 Capable Network Gateways

 

IKEv2 VPN protocol is extremely secure while also providing high stability and performance speed. Therefore, it is one of the recommended VPN services for use on your device. This guide will provide a high-level overview of the requirements needed for installation and operation of an IKEv2 tunnel on your Home Router or Gateway.

In order to enable blanket real-time threat prevention for your entire home office network, you can configure your IKEv2 capable home office network gateway (referred to as "Gateway") to tunnel network traffic through WedgeARP™ SHO.

Please use the following steps to setup this tunnel for your Gateway:

1. Gateway or Device Parameters (or Left) side:

  • Gateway or Device’s External IP Address or, left=204.12.155.101 (“204.12.155.101” is an example. Please use your actual external IP address)
  • Gateway or Device’s Internal Subnet or, leftsubnet=192.168.1.0/24 (“192.168.1.0/24” is an example. Please use your actual internal subnet address)

2. WedgeARP™ SHO (or Right) side

  • VPN Gateway, or right=*****<- Enter the server provided in the welcome email by Wedge Networks.
  • VPN Subnet, or rightsubnet=10.11.100.32/27

3. Tunnel Parameters

  • Hash Method/Algorithm: SHA2 256 bits
  • Encryption Method/Algorithm: AES
  • Diffie Helman Group: Group 2 (1024 bits)
  • Lifetime: 8 hours or 480 seconds
  • Key Exchange: IKEv2
  • Dead Peer Detection: On
  • Authentication Method: Secret
  • Perfect Forward Secrecy: Off/Disabled

The exact configuration files and commands may differ from device to device.  The following links provide some examples:

IPsec IKEv2 Example - OpenWRT

IPsec IKEv2 Example - PfSense

Note:  WedgeARP™ Secure Home Office assigns a static IP address per user tunnel.  A user can only have ONE active tunnel at a time.  The most recent connection will become the active tunnel for the user.  

Caution: Please note that you will need to configure your device using the generated settings by yourself and at your own risk.

For further information, please contact Wedge Sales Support Centre at: 1-888-276-5356