Cisco WS-CE500 Administration Manual page 138

Sa500 series small business security appliances
Table of Contents

Advertisement

Configuring VPN
Configuring a Site-to-Site VPN Tunnel
STEP 4
STEP 5
Cisco SA500 Series Security Appliances Administration Guide
What is the pre-shared Key?: Enter the desired value, which the peer
device must provide to establish a connection. The length of the pre-shared
key is between 8 characters and 49 characters and must be entered exactly
the same here and on the remote VPN gateway or client.
When the security appliance at the other site is configured, the same
NOTE
pre-shared key has to be entered on that device. Do not use the double-
quote character (") in the pre-shared key.
Local WAN Interface: Choose the WAN interface that you want to use for
this VPN tunnel: Dedicated WAN or Optional WAN.
In the Remote & Local WAN Addresses area, enter the following information about
the remote server and the local server:
Remote Gateway Type: Choose IP Address if you want to enter the IP
address of the remote device, or choose Fully Qualified Domain Name
(FQDN) if you want to enter the domain name of the remote network, such as
vpn.company.com. Then enter that address or name in the Remote WAN's
IP Address or Internet Name field.
For the example illustrated in
address of 209. 1 65.200.236. You would choose IP Address for the type, and
you would enter 209. 1 65.200.236 in the IP Address or Internet Name field.
Local Gateway Type: This field can be left blank if you are not using a
different FQDN or IP address than the one specified in the WAN port's
configuration. Choose IP Address if you want to enter an IP address, or
choose Fully Qualified Domain Name (FQDN) if you want to enter a domain
name, such as vpn.company.com. Then enter that address or name in the
Local WAN's IP Address or Internet Name field.
For the example illustrated in
address of 209. 1 65.200.226. You would choose IP Address for the type, and
you would enter 209. 1 65.200.226 in the IP Address or Internet Name field.
In the Secure Connection Remote Accessibility area, enter the following
information about the LAN at the remote site:
Remote LAN IP Address: Enter the IP address of the remote LAN.
For the example illustrated in
address of 10.20.20.0.
Remote LAN Subnet Mask: Enter the associated subnet mask for the above
entered subnet IP Address.
Figure
5, the remote site, Site B, has a public IP
Figure
5, the local site, Site A, has a public IP
Figure
5, the remote site, Site B, has a LAN IP
7
138

Advertisement

Table of Contents
loading

Table of Contents