P-793H v 2 Support Notes
The IP addresses we use in this example are as shown below.
Branch_A
Headquarter
Branch_B
WAN:202.3.1.1
LAN:192.168.3.1
WAN:202.1.1.1
LAN:192.168.1.1
WAN:202.2.1.1
LAN:192.168.2.1
LAN of Branch_A
LAN of Headquarter
LAN of Branch_B
192.168.3.0/24
192.168.1.0/24
192.168.2.0/24
Setp 1: Setup VPN in branch office A
Because VPN routing enables branch offices to talk to each other via tunnels
concentrated on headquarter. In this step, we configure an IPSec rule in
Prestige (Branch_A) for PCs behind branch office A to access both LAN
segments of headquarter and branch office B. Because the LAN segments of
headquarter and branch office B are continuous, we merge them into one
single rule by including these two segments in
Remote
section. If by any
chance, the two segments are not continuous, we strongly recommend you to
setup different rules for these segments.
Create a VPN Rule with name
Branch_A
. The configuration is the same as
Prestige to Prestige Tunnel, just the IP Address is a little different:
(1)
Local Address Type
is
Range Address
and
IP Address Start
is
192.168.3.0, IP Address End
is
192.168.3.255.
This section covers the LAN
segment of branch office A.
96
All contents copy right © 2010 Zy XEL Communications Corporation.