Compatible Systems 2+ manual Configure vpn group basic vpn config

Page 52

46

Chapter 6 - Basic Configuration Guide

 

 

Ethernet example, 192.168.233.0/24), all traffic from a client going to the internal network will be tunneled through the IntraPort 2/2+. This is the most common configuration. There can be multiple entries, including individual addresses (i.e. hosts).

As a special case, the entry 0.0.0.0/0 will send all IP traffic through the tunnel, although the ExcludeLocalLAN keyword can still be used to exclude LAN traffic if desired.

Transform-Specifies the protection types and algorithms to be used for client sessions.

ϖNote: STEP/STAMP (Compatible System’s proprietary tunnel negoti- ation protocol) encryption parameters may be set using the EncryptMethod keyword. This can be used to allow connections from users running older versions of the VPN Client software, but is not recommended for other VPN Groups and is not covered here.

Dual Ethernet Setup Example

configure vpn group "basic vpn config"

Section ’vpn group basic vpn config’ not found in the config. Do you want to add it to the config? y

Configure parameters in this section by entering:

<Keyword> = <Value>

To find a list of valid keywords and additional help enter "?"

[ VPN Group “basic vpn config” ] # bindto=ethernet 0 [ VPN Group “basic vpn config” ] # maxconnections=30

[ VPN Group “basic vpn config” ] # startipaddress=192.168.233.50 [ VPN Group “basic vpn config” ] # localipxnet=CAFEBOO

[ VPN Group “basic vpn config” ] # ipnet=192.168.233.0/24 [ VPN Group “basic vpn config” ] # transform=ESP(MD5,DES)

Single Ethernet Setup Example

configure vpn group "basic vpn config"

Section ’vpn group basic vpn config’ not found in the config. Do you want to add it to the config? y

Configure parameters in this section by entering:

<Keyword> = <Value>

To find a list of valid keywords and additional help enter "?"

[ VPN Group “basic vpn config” ] # bindto=ethernet 0 [ VPN Group “basic vpn config” ] # maxconnections=30

[ VPN Group “basic vpn config” ] # startipaddress=206.45.55.50 [ VPN Group “basic vpn config” ] # localipxnet=CAFEBOO

[ VPN Group “basic vpn config” ] # ipnet=206.45.55.0/24

[ VPN Group “basic vpn config” ] # transform=ESP(MD5,DES)

Image 52
Contents Page Page Network Installation Getting Help with the IntraPort 2/2+ VPN Access ServerIntroduction Getting StartedAppendix a Shipping Defaults Basic Configuration GuideParameters Information SystemsAppendix F Terms and Conditions Pin Outs for DB-25 Male to DB-25 Female RS-232 DataPage About the IntraPort 2/2+ VPN Access Server IntraPort 2/2+ VPN Access Server Installa- tion OverviewIntroduction IntroductionNetwork Installation CompatiView Software InstallationCommand Line Preparation Basic Configuration GuideIntroduction Alternate Protocols and Security Parameters AppendicesPage Warranty and Service Getting Help with the IntraPort 2/2+ VPN Access ServerGetting Started Few NotesNeeded for Installation Supplied with the IntraPort 2/2+ VPN Access ServerWhat You Will Need To Get Started Ethernet Connection Requirements VPN Client Software RequirementsPage Connecting the Server to the Ethernet Network InstallationPlacing the Server Connecting a Management Console Powering Up the ServerCompatiView for Windows System RequirementsInstallation and Operation Transport Protocols and CompatiViewCompatiView Software Installation Page Command Line Management Out-of-Band Command Line ManagementTemporarily Reconfiguring a Host for Command Line Management Setting Up Telnet OperationIP Ethernet 0 section Page Basic Configuration Guide Setup OptionsDiagram of Dual-Ethernet Setup Diagram of Dual-Ethernet SetupDiagram of Single-Ethernet Setup Diagram of Single Ethernet SetupVPN Client Tunnel Settings Configuration Using CompatiViewTurn off AppleTalk and IPX optional Dual Ethernet Single Ethernet TCP/IP Routing Ethernet Single Ethernet Turn IP off on Ethernet Dual Ethernet Set basic IP parameters for EthernetIP Connection Ethernet IP Static Routes Basic Configuration Guide Set an IP Gateway for EthernetDual Ethernet Static Route Single Ethernet Static Route Basic Configuration Guide Basic Configuration Guide Set an IPSec Gateway IPSec GatewaySet an IKE Policy IKE PolicyBasic Configuration Guide Set up VPN Group Configurations VPN Group Configuration General TabVPN Group Configuration IKE Configuration Tab IKE Configuration Transform List Basic Configuration Guide Basic Configuration Guide VPN Group Configuration IPX Connection Tab VPN User Configuration Basic Configuration Guide Set up VPN UsersVPN User Save the configuration to a file and download to the device Set up the Tunnel Partner Add a VPN PortAdd VPN Port Tunnel Partner VPN #Set up Key Management IKE Key ManagementIKE Configuration Transform List Save the configuration to a file and download to the device Basic Configuration Using Command Line ExampleSingle Ethernet Setup Example Edit IP Static Append Configure general Basic Configuration Guide Set up VPN Group Configurations Configure vpn group basic vpn config Save the Configuration and download it to the device Use the configure command to add a VPN Port Configure tunnel partner vpn Required for IPX IPX ProtocolSuggested for IPX Setting up Radius Authentication Setting the IntraPort for a Radius ServerAppleTalk Protocol Required for AppleTalkRadius Server User Authentication Settings Setting up SecurID Authentication Setting the IntraPort for an ACE/Server ACE/Server SettingsSaving a Configuration File to Flash ROM Page Appendix a Shipping Defaults Ethernet InterfacesAppendix B Connector and Cable Pin Outs Appendix B Connector and Cable Pin OutsAppendix C Security Dynamics ACE/Server Information Page IntraPort 2/2+ VPN Access Servers LED Patterns IntraPort 2 Connections/Users LEDs Appendix D LED Patterns and Test Switch SettingsIntraPort 2+ Connections/Users LEDs IntraPort 2 Special Indicators IntraPort 2/2+ VPN Access Server Switch SettingsIntraPort 2+ Special Indicators Page Appendix E Downloading Software From Compatible Systems Compatible Systems WWW ServerPage Appendix F Terms Conditions Appendix F Terms and ConditionsPage Appendix F Terms and Conditions