VPN

Examples

This section describes some examples of using VRT-401 in common VPN situations.

Example 1: Connecting 2 VRT-401s

In this example, 2 LANs are connected via VPN.

Figure 53: Connecting 2 VRT-401s

Note

The LANs MUST use different IP address ranges.

Both endpoints have fixed WAN (Internet) IP addresses.

Configuration Settings

Setting

 

LAN A Gateway

LAN B Gateway

Notes

 

 

 

 

 

Name

 

Policy 1

Policy 1

Name does not affect

 

 

 

 

operation. Select a

 

 

 

 

meaningful name.

Remote Endpoint

 

205.17.11.43

202.11.13.211

Other endpoint's WAN

 

 

 

 

(Internet) IP address.

Local

 

Any

Any

Use a more restrictive

IP addresses

 

 

 

definition if possible.

Remote

 

192.168.1.1 to

192.168.0.1 to

Address range on other

IP addresses

 

192.168.1.254

192.168.0.254

endpoint.

 

 

 

 

Use a more restrictive

 

 

 

 

definition if possible.

Key Exchange

 

IKE

IKE

Must match

 

 

 

 

 

IKE SA Parameters

 

 

 

 

 

 

 

IKE Direction

 

Both ways

Both ways

Does not have to match.

 

 

 

 

Either endpoint can

 

 

 

 

block 1 direction.

Local Identity

 

IP address

IP address

IP address is the most

 

 

 

 

common ID method

Remote Identity

 

IP address

IP address

IP address is the most

 

 

 

 

common ID method

IKE Authentica-

 

Pre-shared Key

Pre-shared Key

Certificates are not

tion method

 

 

 

widely used.

83

Page 87
Image 87
Planet Technology user manual Examples, Example 1 Connecting 2 VRT-401s, Configuration Settings, IKE SA Parameters