UTT Technologies
Chapter 10 VPN
http://www.uttglobal.com
Page
20620620
Now we want to use
AutoKey (IKE)
mode to establish an IPSec tunnel between them,
and use the following proposals (i.e., encryption and authentication algorithms): the phase
1 proposals are left at their default values, and the preferred phase 2 proposal is
esp-aes192-sha; in addition, the preshared key is testing, the originator’s ID type is Email
address and value is [email protected], and the IP addresses are as follows:
The UTT VPN gateway at the head office:
WAN Interface IP Address: 200.200.202.123/24
LAN Interface IP Address: 192.168.123.1/24
The UTT VPN gateway at the branch office:
WAN Interface IP Address: Dynamic (DHCP)
LAN Interface IP Address: 192.168.16.1/24
1. Configuring the UTT VPN gateway at the head office
Go to the
VPN > IPSec > IPSec Settings
page, make the following settings (leave the
default values for the other parameters), and then click the
Save
button.
Key Mode
AutoKey (IKE)
Connection Type
Answer-Only
Gateway IP/Domain Name
(Remote)
0.0.0.0
Subnet IP (Remote)
192.168.16.1
Subnet Mask (Remote)
255.255.255.0
ID Type (Remote)
Email Address
ID Value (Remote)
Bind to (Local)
WAN1
Subnet IP (Local)
192.168.123.1
Subnet Mask (Local)
255.255.255.0
Preshared Key
testing
P2 Encrypt/Auth Algorithms 1
esp-aes192-sha
Advanced Options
Exchange Mode
Aggressive
2. Configuring the UTT VPN gateway at the branch office