724-746-5500 | blackbox.com
Page 93
Chapter 8: Virtual Private Networks
• Internet Key Exchange
8.3.1 A Simple Virtual Private Network
Figure 8-15 illustrates two WRT4000 Series Cellular Wireless Routers functioning as VPN gateways over the IP network.
Laptop terminal
LAN
(1.1.1.x)
Terminal
LAN
(4.4.4.x)
1.1.1.2
4.4.4.2
3.3.3.1
2.2.2.1
1.1.1.1
4.4.4.1
IP
WRT4001A
#2
WRT4001A
#1
Tunnel over
IP (2.2.2.x)
Internet
(IP network)
Tunnel over
IP (3.3.3.x)
Figure 8-15. WRT4000 Series Cellular Wireless Routers as VPN Gateways.
Figure 8-16 shows a simplified example of the WRT4000 Series Cellular Wireless Router’s encryption and encapsulation of data.
NOTE: The transmission shown in Figure 8-16 originates from the laptop terminal (IP address 1.1.1.2) shown in Figure 8-14, and is
destined for the desktop terminal (IP address 4.4.4.2) in Figure 8-15.
Source endpoint’s
internal IP address
Destination endpoint’s
internal IP address
Data
Packet A
Packet C
Packet B
Packet CC
Packet BB
Packet AA
Source gateway’s
internal IP address
Destination gateway’s
internal IP address
Encrypted
information
encryption
encryption
encryption
Packets exiting WRT4001A #1
toward terminal 4.4.4.2
Packets coming into
WRT4001A #1 from
terminal 1.1.1.2
Figure 8-16. Sample IPsec Encryption and Encapsulation,
Содержание WRT4000-ANT
Страница 141: ...724 746 5500 blackbox com Page 141 NOTES...
Страница 142: ...724 746 5500 blackbox com Page 142 NOTES...
Страница 143: ...724 746 5500 blackbox com Page 143 NOTES...