Configuring a Virtual Private Network

Configuring a Virtual Private Network

You can configure the IOLAN to act as a Virtual Private Network (VPN) gateway using the IPsec protocol. Any of the following scenarios can be configured using one IOLAN and a host/server running IPsec software or two IOLANs, each acting as the VPN gateway. All the examples have NAT Traversal (NAT_T) enabled, since both VPN gateways are running through routers.

IOLAN-to-Host/Network

The following example shows how to configure an IPsec tunnel between serial devices connected to the IOLAN and a host/network. NAT Traversal (NAT_T) is enabled in this example (on both sides) because the VPN tunnel is going private network to public network to private network. This example uses an RSA signature for the authentication method, so the steps required to configure the authentication are in this example.

Unencrypted

Data

 

 

 

 

 

 

 

External IP Address

External IP Address

 

Right

 

 

 

 

 

 

 

196.15.23.56

 

199.24.23.88

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Remote VPN

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Router

 

 

Router

 

Gateway

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Internet

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

192.168.45.99

 

 

 

 

 

 

 

 

 

 

 

 

 

172.16.45.99

 

 

 

 

 

 

 

 

 

 

 

172.16.45.1

 

 

 

 

 

 

 

 

 

 

Left

 

 

 

 

 

 

 

 

 

 

 

IPsec Tunnel--Encrypted Data

 

192.168.45.45

 

 

 

 

 

 

 

 

 

Unencrypted

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Data

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

192.168.45.87

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

192.168.45.12

1.Configure the IPsec tunnel in the IOLAN:

328

IOLAN Device Server User’s Guide, Version 3.6

Page 328
Image 328
Perle Systems STS, SCS manual Configuring a Virtual Private Network, IOLAN-to-Host/Network