18.07.2013 Views

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Figure 191: VPN<br />

between two corporate<br />

<strong>of</strong>fices<br />

Chapter 14: Configuring Virtual Private Networks<br />

Example VPN Scenarios<br />

Scenario 1: <strong>G2</strong>-to-<strong>G2</strong> VPN via shared password<br />

The easiest type <strong>of</strong> VPN association to configure is one that uses a shared<br />

password for authentication. A shared password is typically used to establish a<br />

VPN association between two corporate <strong>of</strong>fices that have static IP addresses.<br />

Such a situation occurs if you have a business partner that requires access to<br />

your network, or if you have one or more corporate divisions located in different<br />

cities.<br />

The following figure provides the sample configuration information used in this<br />

scenario.<br />

The requirements<br />

This VPN scenario requires the following:<br />

• A VPN connection between two corporate <strong>of</strong>fices<br />

• Shared password authentication<br />

• Static IP addresses for each peer in the VPN association<br />

How it is done<br />

<strong>Sidewinder</strong> <strong>G2</strong><br />

50.1.0.0/16 100.1.1.1<br />

fw.west.example.com<br />

The following steps show the fields on the VPN menus that must be defined in<br />

order to create this VPN association. The configuration steps are performed on<br />

the <strong>Sidewinder</strong> <strong>G2</strong> named fw.east.example.com.<br />

In the Admin Console, select VPN Configuration > Security Associations, and<br />

then click New to configure a new association.<br />

1 On the General tab:<br />

• Name = corporate_west<br />

• Encapsulation = Tunnel<br />

• Mode = Fixed IP<br />

• Enabled = Yes<br />

• Burb = Trusted<br />

• Local IP = localhost<br />

200.1.1.1<br />

<strong>Sidewinder</strong> <strong>G2</strong><br />

Internet<br />

burb<br />

Trusted<br />

burb<br />

fw.east.example.com<br />

250.1.1.0/24<br />

451

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!