Download Print this page

Intel Express 8205 Quick Start Manual page 16

Advertisement

VPN Tunnel Example 2
Connecting Two Branch
Offices
Two sites can use a VPN tunnel to send and receive
secure business data over the Internet. The two sites
could be two branch offices, a remote worker and a
central office, a branch office and a central office, or
your site and a business partner’s site. For more
information, see the online documentation on the
Intel
®
Device View CD-ROM.
Connecting two branch offices with a VPN tunnel
enables both offices to share each other’s resources
securely. Using a VPN tunnel saves the cost of
dialing into a distant site; the only cost is that of
connecting to the local Internet service provider
(ISP).
In this example, the IP address on the local side is
dynamically assigned. Therefore, the Local User ID
identifies the branch office, rather than a permanent
external IP address. If the local router had a perma-
nent IP address, then you would not have to enter a
Local User ID. The IP address would identify the
branch office.
Table 3 shows the configuration parameters used in
the VPN Tunnel Wizard to create a tunnel for the
Branch Office to Branch Office example.
Note: The values for the parameters in Table 3 are
examples only; you must enter the values specific to
your network.
Firewalls and network address translation
If you are using firewall filters or network address
translation (NAT) on the LAN 2 port, the VPN
Tunnel Wizard modifies your settings to enable the
tunnel.
14
Branch Office 1
Local Network Address 192.168.1.0
Intel 8205 Router
®
Intel Router
Status
LAN
100 Mbps
WAN Link
WAN Switch
WAN Control
Test Mode
Internet
(ISP)
Intel Router
®
Intel Router
Status
LAN
100 Mbps
WAN Link
WAN Switch
175.123.45.1
Branch Office 2
Remote Network Address 175.123.45.0
Figure 24. Example Branch Office to Branch Office
VPN Tunnel. A VPN tunnel between two remote offices.
Parameter
Remote IP Address
Local User ID
Local Network Address
Local Network Mask
Remote Network Address 175.123.45.0
Remote Network Mask
Encryption Algorithm
Authentication Algorithm
Re-keying Interval
Table 3. Configuration Parameters. Settings used for
the Branch Office to Branch Office example when
configuring the VPN tunnel using the VPN Tunnel Wizard.
®
Connection to
xDSL/cable
Internet with dynamic
modem
IP address
Permanent
connection to Internet with
a fixed IP address
Fixed
IP address
WAN Control
Test Mode
®
Setting
175.123.45.1
aradomsk23
192.168.1.0
255.255.255.0
255.255.255.0
DES
MD5
1 Day
7073

Advertisement

loading