![Digi IX20 User Manual Download Page 285](http://html.mh-extra.com/html/digi/ix20/ix20_user-manual_2496666285.webp)
Virtual Private Networks (VPN)
IPsec
IX20 User Guide
285
a. Add a destination network:
(config)> add vpn ipsec tunnel ipsec_example nat end
(config vpn ipsec tunnel ipsec_example nat 0)>
b. Set the IPv4 address and optional netmask of a destination network that requires source
NAT. You can also use
any
, meaning that any destination network connected to the tunnel
will use source NAT.
(config vpn ipsec tunnel ipsec_example nat 0)> dst
value
(config vpn ipsec tunnel ipsec_example nat 0)>
18. Configure policies that define the network traffic that will be encapsulated by this tunnel:
a. Change to the root of the configuration schema:
(config vpn ipsec tunnel ipsec_example nat 0)> ...
(config)>
b. Add a policy:
(config)> add vpn ipsec tunnel ipsec_example policy end
(config vpn ipsec tunnel ipsec_example policy 0)>
c. Set the type of local network policy:
(config vpn ipsec tunnel ipsec_example policy 0)> local type
value
(config vpn ipsec tunnel ipsec_example policy 0)>
where
value
is one of:
n
address
: The address of a local network interface.
Set the address:
i. Use the
?
to determine available interfaces:
(config vpn ipsec tunnel ipsec_example policy 0)> local
address ?
Address: The local network interface to use the address of.
This field must be set when 'Type' is set to 'Address'.
Format:
defaultip
defaultlinklocal
eth1
eth2
loopback
Current value:
(config vpn ipsec tunnel ipsec_example policy 0)> local
address