ZyXEL Communications ZyWALL USG Series Application Notes page 140

Unified security gateway
Hide thumbs Also See for ZyWALL USG Series:
Table of Contents

Advertisement

• Destination: 192.168.12.0
• Next Hop: VPN T unnel 1
Headquarters
VPN Gateway (VPN Tunnel 1):
• My Address: 10.0.0.1
• Peer Gateway Address: 10.0.0.2
VPN Connection (VPN Tunnel 1):
• Local Policy: 192.168.1.0/255.255.255.0
• Remote Policy: 192.168.11.0/255.255.255.0
• Disable Policy Enforcement
VPN Gateway (VPN Tunnel 2):
• My Address: 10.0.0.1
• Peer Gateway Address: 10.0.0.3
VPN Connection (VPN Tunnel 2):
• Local Policy: 192.168.1.0/255.255.255.0
• Remote Policy: 192.168.12.0/255.255.255.0
• Disable Policy Enforcement
Concentrator
• Add VPN tunnel 1 and VPN tunnel 2 to an IPSec VPN concentrator .
Firewall
• Block traffic from VPN tunnel 2 from accessing the LAN.
Branch Office B
VPN Gateway (VPN Tunnel 2):
• My Address: 10.0.0.3
• Peer Gateway Address: 10.0.0.1
VPN Connection (VPN Tunnel 2):
• Local Policy: 192.168.12.0/255.255.255.0
• Remote Policy: 192.168.1.0/255.255.255.0
• Disable Policy Enforcement
Policy Route
• Source: 192.168.12.0
• Destination: 192.168.11.0
• Next Hop: VPN T unnel 2
3.2.1 What Can Go Wrong
139

Advertisement

Table of Contents
loading

Table of Contents