Adding The Vpn - Juniper NETWORK AND SECURITY MANAGER 2010.3 - ADMINISTRATION GUIDE REV1 Administration Manual

Table of Contents

Advertisement

Adding the VPN

Copyright © 2010, Juniper Networks, Inc.
"Autogenerating VPN Rules" on page 574
"Configuring Overrides" on page 574
"Adding the VPN Link" on page 576
NOTE: For an L2TP RAS VPN, you do not need to configure gateways or IKE.
The following sections detail each step.
NOTE: For step-by-step instructions on creating VPNs, see the NSM Online Help topic
"VPNs".
From the menu bar, click VPN Manager > New and select the VPN type:
1.
AutoKey IKE VPN—Use to connect devices and/or protected resources. An AutoKey
IKE VPN supports mixed-mode, policy-based, and routing-based VPNs, but does
not support RAS users.
AutoKey IKE RAS VPN—Use to connect IKE RAS users and protected resources.
An Autokey IKE RAS VPN supports policy-based VPNs and IKE RAS users, but
does not support routing-based VPNs, mixed-mode VPNs, or L2TP RAS users.
L2TP RAS VPN—Use to connect L2TP RAS users and protected resources without
encryption.
L2TP over AutoKey IKE RAS VPN—Use to connect L2TP RAS users and protected
resources. An L2TP over AutoKey IKE RAS VPN supports policy-based VPNs and
L2TP RAS users, but does not support routing-based or mixed-mode VPNs.
Enter a name for the VPN, then specify the general properties for the VPN:
2.
Enable—Use this option to enable/disable the VPN. If you disable the VPN, the
autogenerated VPN rules, VPN member gateways, and other device configuration
settings are not installed on your managed devices.
Termination Point—Select the Default Zone for the VPN Termination Point.
Typically, the default zone is untrust. When you configure the topology for the
VPN, you can select a unique termination point for each VPN member.
View Properties—Configure the VPN components that the VPN Manager displays
for the VPN:
Type (AutoKey IKE VPN Only). Select the components you want to configure
for the VPN: Route-based components, Policy-based components, or both. By
default, VPN Manager displays all Route- and Policy-based components for an
AutoKey IKE VPN.
Chapter 12: Configuring VPNs
561

Advertisement

Table of Contents
loading

This manual is also suitable for:

Network and security manager 2010.3

Table of Contents