18.07.2013 Views

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Example VPN Scenarios<br />

Figure 13-18. VPN<br />

between two corporate<br />

<strong>of</strong>fices<br />

13-66 Configuring Virtual Private Networks<br />

The ISAKMP server is enabled on the appropriate burb. See<br />

“Configuring the ISAKMP server” on page 13-11 for information on<br />

enabling this server. In the scenarios that follow, it is assumed the<br />

server is enabled on the Internet burb.<br />

The proper rule(s) are defined to allow ISAKMP traffic on the<br />

proper burb(s). In the scenarios that follow it is assumed a rule has<br />

been defined that allows ISAKMP traffic on the Internet burb.<br />

Note: The values used in the following scenarios are for demonstration purposes only.<br />

Scenario 1: <strong>Sidewinder</strong> <strong>G2</strong>-to-<strong>Sidewinder</strong> <strong>G2</strong> VPN via<br />

shared password<br />

The easiest type <strong>of</strong> VPN association to configure is one that uses a<br />

shared password for authentication. A shared password is typically<br />

used to establish a VPN association between two corporate <strong>of</strong>fices<br />

that have static IP addresses. Such a situation occurs if you have a<br />

business partner that requires access to your network, or if you have<br />

one or more corporate divisions located in different cities.<br />

The following figure provides the sample configuration information<br />

used in this scenario.<br />

<strong>Sidewinder</strong> <strong>G2</strong><br />

50.1.0.0/16 100.1.1.1<br />

fw.west.bizco.net<br />

The requirements This VPN scenario requires the following:<br />

A VPN connection between two corporate <strong>of</strong>fices<br />

Shared password authentication<br />

200.1.1.1<br />

<strong>Sidewinder</strong> <strong>G2</strong><br />

Internet<br />

burb<br />

Trusted<br />

burb<br />

fw.east.bizco.net<br />

Static IP addresses for each peer in the VPN association<br />

250.1.1.0/24

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!