03.04.2013 Views

fortigate-ipsec-40-mr3

fortigate-ipsec-40-mr3

fortigate-ipsec-40-mr3

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

IPv6 IPsec VPNs Site-to-site IPv6 over IPv4 VPN example<br />

config firewall policy<br />

edit 1<br />

set srcintf port3<br />

set dstintf toA<br />

set srcaddr all<br />

set dstaddr all<br />

set action accept<br />

set service ANY<br />

set schedule always<br />

next<br />

edit 2<br />

set srcintf toA<br />

set dstintf port3<br />

set srcaddr all<br />

set dstaddr all<br />

set action accept<br />

set service ANY<br />

set schedule always<br />

end<br />

config router static6<br />

edit 1<br />

set device port2<br />

set dst 0::/0<br />

next<br />

edit 2<br />

set device toA<br />

set dst 192.168.2.0/24<br />

end<br />

Site-to-site IPv6 over IPv4 VPN example<br />

In this example, IPv6-addressed private networks communicate securely over IPv4 public<br />

infrastructure.<br />

Figure 32: Example IPv6-over-IPv4 VPN topology<br />

Port 3<br />

fec0:0000:0000:0000::/64<br />

Port 2<br />

10 110.0.0.1/24<br />

Fo Fo Fo Fo Fo Fort FortiGate rt rt rt rrtiGG iG iG iG iGat Gat<br />

at at at ateeee e AA A<br />

Port 2<br />

10.0.1.1/24<br />

Fo Foo Fort FortiGate rt rrtiG iG iG iGat at at ateee BBBB<br />

fec0:0000:0000:0004::/64<br />

Configure FortiGate A interfaces<br />

Port 2 connects to the IPv4 public network and port 3 connects to the IPv6 LAN.<br />

FortiOS Handbook v3: IPsec VPNs<br />

01-434-112804-20120111 195<br />

http://docs.fortinet.com/<br />

PPPPPPo Po PPort r 3

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!