VPN
Examples
This section describes some examples of using
Example 1: Connecting 2 VRT-401s
In this example, 2 LANs are connected via VPN.
Figure 53: Connecting 2 VRT-401s
Note
∙The LANs MUST use different IP address ranges.
∙Both endpoints have fixed WAN (Internet) IP addresses.
Configuration Settings
Setting |
| LAN A Gateway | LAN B Gateway | Notes |
|
|
|
|
|
Name |
| Policy 1 | Policy 1 | Name does not affect |
|
|
|
| operation. Select a |
|
|
|
| meaningful name. |
Remote Endpoint |
| 205.17.11.43 | 202.11.13.211 | Other endpoint's WAN |
|
|
|
| (Internet) IP address. |
Local |
| Any | Any | Use a more restrictive |
IP addresses |
|
|
| definition if possible. |
Remote |
| 192.168.1.1 to | 192.168.0.1 to | Address range on other |
IP addresses |
| 192.168.1.254 | 192.168.0.254 | endpoint. |
|
|
|
| Use a more restrictive |
|
|
|
| definition if possible. |
Key Exchange |
| IKE | IKE | Must match |
|
|
|
|
|
IKE SA Parameters |
|
|
| |
|
|
|
| |
IKE Direction |
| Both ways | Both ways | Does not have to match. |
|
|
|
| Either endpoint can |
|
|
|
| block 1 direction. |
Local Identity |
| IP address | IP address | IP address is the most |
|
|
|
| common ID method |
Remote Identity |
| IP address | IP address | IP address is the most |
|
|
|
| common ID method |
IKE Authentica- |
| Certificates are not | ||
tion method |
|
|
| widely used. |
83