132
Chapter 6 Configuring branch office tunnels
NN46110-500
6
Click the
Filters
drop-down list and choose the filter that you want this
branch office connection to use. The default is
permit all
. You can specify
one filter. Packet filtering controls the types of access allowed for users of this
branch connection. Filters are based on various parameters, including protocol
ID, direction, IP addresses, source, port, and TCP connection establishment.
Filters are defined on the
Profiles
>
Filters
window.
7
For
Authentication
, configure the authentication that is used between the
local and remote branch office. The fields that appear in this window depend
on whether you are using an IPsec, PPTP, or L2TP tunnel type.
Set up the authentication method for the connection, for example, text
pre-shared key. Enter the key (for example, bostoncleveland), then retype it in
the Confirm Text String field.
If you create a branch office connection using any IPsec certificate and you
choose IP address as the alternate name, you must use the IP address of the
public interface that is on the branch office end of the connection.
8
Select to reset the
Tunnel MTU
. When you change the MTU value, you must
reboot the Nortel VPN for the new value to take effect.
9
Enter an
MTU Value
. Enter a value from 576 through 1788 bytes. The default
value is 1788.
10
Under
NAT
, select either
PortNAT
or
none
. NAT enables you to build your
VPN without requiring that you reconfigure or rename your existing network.
NAT sets are defined on the
Profiles
>
NAT
window. For further information
on NAT, see
Nortel VPN Router Security — Firewalls, Filters, NAT, and QoS
.
11
For
IP Configuration
, select
either
Static
or
Dynamic
routing for this branch
office connection
:
•
If you choose
Static
routing, you must manually specify the Accessible
Networks (the private internal networks behind a VPN Router that are
accessed via the branch office connection).
•
If you choose
Dynamic
, the routing protocol automatically determines
the accessible networks based on information that is entered on the
S
ystem
>
LAN Interfaces
>
Edit IP Address
window. When this
Dynamic is selected additional settings for OSPF and RIP appears.
12
Click
Create Local Network
to go the
Profiles
>
Networks
window and
define a local network.
T
he Local networks are the subnetworks on the private
internal network of the local VPN Router.If you want to edit an existing local
Содержание Contivity 1050
Страница 10: ...10 Contents NN46110 500 ...
Страница 14: ...14 Tables NN46110 500 ...
Страница 22: ...22 Preface NN46110 500 ...
Страница 58: ...58 Chapter 2 Getting started NN46110 500 ...
Страница 74: ...74 Chapter 3 Setting up the Nortel VPN Router 1010 1050 and 1100 NN46110 500 ...
Страница 90: ...90 Chapter 4 Configuring user tunnels NN46110 500 ...
Страница 118: ...118 Chapter 5 Configuring the system NN46110 500 ...
Страница 162: ...162 Chapter 8 Configuring IPSec mobility and persistent mode NN46110 500 ...
Страница 164: ...164 Branch office quick start template NN46110 500 ...
Страница 178: ...178 Index NN46110 500 W Web browser interface 50 Web interface options 53 Welcome display 56 ...