. . . . .
V I R T U A L P R I V A T E N E T W O R K S
Configuring Internet Key Exchange
Version 3R2
Security Appliance User Guide
7-29
TRANSPARENT MODE VPN DEPLOYMENT
[NOTE]
For information on Transparent Mode, see
Configuring
Transparent Mode on page 3 - 15
.
Figure 7-7
shows a VPN setup between two appliances running in
transparent mode.
Figure 7-7: VPN in Transparent Mode
In
Figure 7-7
the appliances will be used in transparent mode, but will
also terminate VPN between two sites.
Configuration Elements
VF4000 A
VF4000 B
Trust Zone
eth0 0.0.0.0
eth0 0.0.0.0
Untrust Zone
eth1 0.0.0.0
eth1 0.0.0.0
Addresses
Local_lan 10.0.0.0/2, Trust
Peer_lan 172.16.10.0/24,
Untrust
Local_lan 172.16.10.0/24,
Trust
Peer_lan 10.0.0.0/24,
Untrust
IKE Gateway
GWA 10.0.0.100, preshared
password
GWB 172.16.10.100,
preshared password
Policies
local_lan -> peer_lan, any
service, vpn1
peer_lan -> local_lan, any
service, vpn1
local_lan -> peer_lan, any
service, vpn1
peer_lan -> local_lan, any
service, vpn1
Management Interface
The br0 interface must be on
the Untrust Zone. This
determines the direction in
which the encrypted traffic
will flow.
Br0: 10.0.0.110
Zone: Untrust
Br0: 172.16.10.100
Zone: Untrust
Workstation A IP
10 0 0 250
Router A IP 10.0.0.5
Internet
10.0.0.0/24
Eth0: 0.0.0.0 Eth1: 0.0.0.0/0
Management IP:
10.0.0.110
VF4000
VF4000
172.16.10.0/24
Eth0: 0.0.0.0
Eth1: 0.0.0.0
Workstation B IP
172 16 10 250
Router B IP
172.16.10.5
Management IP:
172.16.10.100
Содержание freeGuard Blaze 2100
Страница 1: ...freeGuard Blaze 2100 User Guide Version 3R2...
Страница 14: ...I NT R O DU C T I O N About Document Conventions 1 4 Security Appliance User Guide Version 3R2 1...
Страница 24: ...G E T T IN G S T A R T E D Installing the freeGuard Blaze 2100 2 10 Security Appliance User Guide Version 3R2 2...
Страница 82: ...SY ST EM MA N AGEM E N T Using Traceroute 4 22 Security Appliance User Guide Version 3R2 4...
Страница 192: ...P OL IC Y CO NF I G URA T IO N About Schedules 9 28 Security Appliance User Guide Version 3R2 9...
Страница 216: ...P R E DEF I N E D SER V IC ES A 4 Security Appliance User Guide Version 3R2 A...