12.2.4 IPSec configuration instance
12.2.4.1 Gateway to gateway
上海
LAN: 192.168.1.1/24
WAN:200.200.202.126/24
UTT VPN 网关
Requirements:
In this scenario, a company is based in Shanghai. It has a branch office in Beijing, and hopes to
achieve a mutual access to the internal resources of the LAN in two places. This scenario uses the
IPSec protocol to establish VPN tunnels, and the HiPER router is used by the VPN gateway in two
places at the following addresses:
Shanghai gateway:
Intranet network segment: 192.168.1.0/24.
LAN IP address: 192.168.1.1/24.
WAN1 domain name: 200.200.202.126/24.
Beijing gateway:
Intranet network segment: 192.168.16.0/24.
LAN IP address: 192.168.16.1/24.
WAN1 IP address: 200.200.202.127/24.
The configuring steps are follows:
1.
Configure Shanghai gateway
http://www.level1.com
Internet
IPSec 隧道
Figure 12_20 Gateway to gateway topology
北京
LAN: 192.168.16.1/24
WAN:200.200.202.127/24
UTT VPN 网关
Chapter 12 VPN
Page 146