Chapter 7 Configuring control tunnels
145
Nortel VPN Router Configuration — Basic Features
•
In the remote endpoint address field, enter the address of the remote
Nortel VPN Router (for example, 132.19.2.30) that you want to form the
opposite end of the branch office connection. For Initiator connection
types, you can enter the DNS host name.
6
Click the
Filters
drop-down list and choose the filter that you want this
branch office connection to use. The default is
permit all
. You can specify
one filter. Packet filtering controls the types of access allowed for users of this
branch connection. Filters are based on various parameters, including protocol
ID, direction, IP addresses, source, port, and TCP connection establishment.
Filters are defined on the
Profiles
>
Filters
window.
7
For
Authentication
, configure the authentication that is used between the
local and remote branch office. The fields that appear in this window depend
on whether you are using an IPsec, PPTP, or L2TP tunnel type.
Set up the authentication method for the connection, for example, text
pre-shared key. Enter the key (for example, bostoncleveland), then retype it in
the Confirm Text String field.
If you create a branch office connection using any IPsec certificate and you
choose IP address as the alternate name, you must use the IP address of the
public interface that is on the branch office end of the connection.
8
Select to reset the
Tunnel MTU
. When you change the MTU value, you must
reboot the Nortel VPN for the new value to take effect.
9
Enter an
MTU Value
. Enter a value from 576 through 1788 bytes. The default
value is 1788.
10
Under
NAT
, select either
PortNAT
or
none
. NAT enables you to build your
VPN without requiring that you reconfigure or rename your existing network.
NAT sets are defined on the
Profiles
>
NAT
window. For further information
on NAT, see
Nortel VPN Router Security — Firewalls, Filters, NAT, and QoS
.
11
For
IP Configuration
, select
either
Static
or
Dynamic
routing for this branch
office connection
:
•
If you choose
Static
routing, you must manually specify the Accessible
Networks (the private internal networks behind a VPN Router that you
can access via the branch office connection).
•
If you choose
Dynamic
, the routing protocol automatically determines
the accessible networks based on information that is entered on the
S
ystem
>
LAN Interfaces
>
Edit IP Address
window.
Summary of Contents for Contivity 1050
Page 10: ...10 Contents NN46110 500 ...
Page 14: ...14 Tables NN46110 500 ...
Page 22: ...22 Preface NN46110 500 ...
Page 58: ...58 Chapter 2 Getting started NN46110 500 ...
Page 74: ...74 Chapter 3 Setting up the Nortel VPN Router 1010 1050 and 1100 NN46110 500 ...
Page 90: ...90 Chapter 4 Configuring user tunnels NN46110 500 ...
Page 118: ...118 Chapter 5 Configuring the system NN46110 500 ...
Page 162: ...162 Chapter 8 Configuring IPSec mobility and persistent mode NN46110 500 ...
Page 164: ...164 Branch office quick start template NN46110 500 ...
Page 178: ...178 Index NN46110 500 W Web browser interface 50 Web interface options 53 Welcome display 56 ...