OK, so I finally implemented a VPN!
I followed the FAQ "How do I add a L2TP over IPSec Server using PSK and Local User Authentication?" at http://www.dlink.com/support/faqDetail/?prod_id=3248&print=1 and it was pretty painless, but I have a few questions.
Mainly, how secure is this? I ask because when setting up the VPN on the router, specifically configuring the User Authentication Rule, the FAQ said under the PPP Agent Options to Allow Unauthenticated Users, Unencrypted Password (PAP).
Also, to setup the client I used the FAQ "How do I configure my Windows Vista & Windows 7 computer to connect to a L2TP over IPsec Tunnel on my DFL series firewall?" at http://www.dlink.com/support/faqDetail/?prod_id=3250&print=1
On the advanced Security settings of the VPN connection properties it says to allow Unencrypted Password (PAP) and CHAP. Which when I do I get a warning that if one of these protocols is negotiated, data encryption will not occur.
As you can tell I am a newb with VPN stuff, so any help would be appreciated. I have a client who will need remote access to the network and want to make sure I've taken the appropriate precautions to keep things secure.
Thanks!