NetComm NTC-400 Series User Manual page 182

Hide thumbs Also See for NTC-400 Series:
Table of Contents

Advertisement

Configuration Path
Command Button
Configuration Path
File
For Network-B at Branch Office
The following tables list the parameter configuration as an example of the "Trusted Certificate" function used in the user
authentication of IPSec VPN tunnel establishing, as shown in the diagram above. The configuration example must be
combined with the ones in "My Certificate" and "Issued Certificate" sections to complete the setup for the whole user
scenario.
Configuration Path
Command Button
Configuration Path
File
Configuration Path
Command Button
Configuration Path
File
Scenario Operation Procedure
(same as the one described in "My Certificate" section)
In the above diagram, "Router 1" is the gateway of Network-A at headquarters and the subnet of its Intranet is 10.0.76.0/24.
It has the IP address of 10.0.76.2 for LAN interface and 203.95.80.22 for WAN-1 interface. "Router 2" is the gateway of
Network-B in the branch office and the subnet of its Intranet is 10.0.75.0/24. It has the IP address of 10.0.75.2 for the LAN
interface and 118.18.81.33 for the WAN-1 interface. They both serve as the NAT security gateways.
On Router 2 import the certificates of the root CA and HQCRT that were generated and signed by Router 1 into the "Trusted
CA Certificate List" and "Trusted Client Certificate List" of Router 2.
Import the obtained BranchCRT certificate (the derived BranchCSR certificate after Router 1's root CA signature) into the
"Trusted Client Certificate List" of the Router 1 and the "Local Certificate List" of the Router 2. For more details, refer to the
Network-B operation procedure in the "My Certificate" section of this manual.
Router 2 can establish an IPSec VPN tunnel with "Site to Site" scenario and IKE and X.509 protocols to Router 1.
182 of 359
© NetComm Wireless 2019
[Trusted Certificate]-[Trusted Client Certificate List]
Import
[Trusted Certificate]-[Trusted Client Certificate Import from a File]
BranchCRT.crt
[Trusted Certificate]-[Trusted CA Certificate List]
Import
[Trusted Certificate]-[Trusted CA Certificate Import from a File]
HQRootCA.crt
[Trusted Certificate]-[Trusted Client Certificate List]
Import
[Trusted Certificate]-[Trusted Client Certificate Import from a File]
HQCRT.crt
User Guide

Advertisement

Table of Contents
loading

Table of Contents