VPN
83
Examples
This section describes some examples of using VRT-401 in common VPN situations.
Example 1: Connecting 2 VRT-401s
In this example, 2 LANs are connected via VPN.
Figure 53: Connecting 2 VRT-401s
Note
•
The LANs MUST use different IP address ranges.
•
Both endpoints have fixed WAN (Internet) IP addresses.
Configuration Settings
Setting
LAN A Gateway LAN B Gateway Notes
Name
Policy 1
Policy 1
Name does not affect
operation. Select a
meaningful name.
Remote Endpoint
205.17.11.43
202.11.13.211
Other endpoint's WAN
(Internet) IP address.
Local
IP addresses
Any
Any
Use a more restrictive
definition if possible.
Remote
IP addresses
192.168.1.1 to
192.168.1.254
192.168.0.1 to
192.168.0.254
Address range on other
endpoint.
Use a more restrictive
definition if possible.
Key Exchange
IKE
IKE
Must match
IKE SA Parameters
IKE Direction
Both ways
Both ways
Does not have to match.
Either endpoint can
block 1 direction.
Local Identity
IP address
IP address
IP address is the most
common ID method
Remote Identity
IP address
IP address
IP address is the most
common ID method
IKE Authentica-
tion method
Pre-shared Key
Pre-shared Key
Certificates are not
widely used.