Avaya G250 Administration page 387

Media gateway
Hide thumbs Also See for G250:
Table of Contents

Advertisement

Figure 40: Simple VPN topology: VPN hub and spokes
Avaya GW
Branch
G350
Office 1
Avaya GW
G350
Branch
Office 2
Configuring the simple VPN topology
This section describes how to configure the simple VPN topology, followed by a detailed
configuration example.
To configure the simple VPN topology
1. Configure each branch as follows:
The default gateway is the Internet interface.
VPN policy is configured on the Internet interface egress as follows:
Traffic from the local subnets to any IP address is encrypted, using tunnel mode IPSec.
The remote peer is the Main Office (the VPN Hub)
An access control list (ACL) is configured on the Internet interface to allow only the VPN
/ ICMP traffic, as follows:
Note:
For information about using access control lists, see
Note:
policy
on page 441.
Ingress:
1. IKE -> Permit
2. ESP -> Permit
3. ICMP -> Permit
Note:
This allows PMTUD application to work.
Note:
DSL or
Cable
modem
DSL or
Cable
modem
Internet
Chapter 19: Configuring
Issue 1.1 June 2005
Typical installations
Access
Router +
VPN
termination
Main Office
387

Advertisement

Table of Contents
loading

This manual is also suitable for:

G350

Table of Contents