Prestige 653HWI Series User’s Guide
VPN Screens
17-25
17.16 Telecommuter VPN/IPSec Examples
The following examples show how multiple telecommuters can make VPN connections to a single Prestige at
headquarters from remote IPSec routers that use dynamic WAN IP addresses.
17.16.1
Telecommuters Sharing One VPN Rule Example
Multiple telecommuters can use one VPN rule to simultaneously access a Prestige at headquarters. They
must all use the same IPSec parameters (including the pre-shared key) but the local IP addresses (or ranges of
addresses) cannot overlap. See the following table and figure for an example.
Having everyone use the same pre-shared key may create a vulnerability. If the pre-shared key is
compromised, all of the VPN connections using that VPN rule are at risk. A recommended alternative is to
use a different VPN rule for each telecommuter and identify them by unique IDs (see
section 17.16.2
for an
example)
Table 17-12 Telecommuter and Headquarters Configuration Example
TELECOMMUTER
HEADQUARTERS
My IP Address
:
0.0.0.0 (dynamic IP address
assigned by the ISP)
Public static IP address
Secure Gateway
IP Address
:
Public static IP address or domain
name.
0.0.0.0 With this IP address only the
telecommuter can initiate the IPSec tunnel.
Содержание Prestige 653HWI series
Страница 30: ......
Страница 62: ......
Страница 64: ......
Страница 88: ......
Страница 108: ...Prestige 653HWI Series User s Guide 7 20 WAN Setup Figure 7 10 Traffic Redirect LAN Setup...
Страница 112: ......
Страница 114: ......
Страница 134: ......
Страница 136: ......
Страница 156: ......
Страница 172: ......
Страница 184: ......
Страница 185: ...VPN IPSec V Part V VPN IPSec This part provides information about configuring VPN IPSec for secure communications...
Страница 186: ......
Страница 192: ......
Страница 200: ...Prestige 653HWI Series User s Guide 17 8 VPN Screens Figure 17 3 VPN IKE...
Страница 222: ......
Страница 242: ......
Страница 262: ......
Страница 263: ...Maintenance VIII Part VIII Maintenance This part covers the maintenance screens...
Страница 264: ......
Страница 266: ...Prestige 653HWI Series User s Guide 22 2 Maintenance Figure 22 1 System Status...
Страница 282: ......
Страница 292: ......
Страница 312: ......
Страница 338: ......
Страница 368: ......
Страница 408: ......
Страница 430: ......
Страница 434: ......
Страница 444: ......
Страница 450: ......
Страница 466: ......
Страница 474: ......
Страница 480: ......
Страница 491: ...Prestige 653HWI Series User s Guide Wireless LAN and IEEE 802 11 C 3 Diagram C 2 ESS Provides Campus Wide Coverage...
Страница 492: ......
Страница 497: ...Prestige 653HWI Series User s Guide PPPoE E 3 Diagram E 2 Prestige as a PPPoE Client...
Страница 498: ......
Страница 500: ......
Страница 540: ......
Страница 554: ......