Creating Device Level L2TP-over-Autokey IKE VPNs Overview
Related
Documentation
Adding VPN Rules to a Security Policy Overview
Configuring the VPN
Copyright © 2010, Juniper Networks, Inc.
Creating a device-level L2TP-over-Autokey IKE VPN is a multi-stage process:
Add L2TP users (see "Device Level L2TP VPN: Using L2TP Users Configuration
1.
Overview" on page 235)
Configure L2TP settings (see "Device Level L2TP VPN: Using L2TP Configuration
2.
Overview" on page 235)
Configure peer gateway (see "Device Level AutoKey IKE VPN: Using Gateway
3.
Configuration Overview" on page 221)
Configure routes (route-based only) (see "Device Level AutoKey IKE VPN: Using Routes
4.
Configuration Overview" on page 227)
Add VPN to device (see "Device-Level AutoKey IKE VPN: Using VPN Configuration
5.
Overview" on page 227)
Add VPN rules to security policy (see "Device Level L2TP VPN: Using VPN Rule
6.
Configuration Overview" on page 236)
Adding VPN Rules to a Security Policy Overview on page 237
Device Level L2TP VPN: Using VPN Rule Configuration Overview on page 236
To create a policy-based VPN or to add access policies to a route-based VPNs, you must
add a VPN rule to a security policy for each device in the VPN.
Adding a VPN rule is a three-stage process:
Configuring the VPN on page 237
Configuring the Security Policy on page 238
Assigning and Installing the Security Policy on page 238
In security policies, select a predefined security policy (or create a policy), and add a VPN
rule. Right-click in the Source Address, Destination Address, Action, or Install On column
and select Configure VPN to display the Configure VPN dialog box.
Select the source security device that contains the termination interface for the VPN
tunnel.
Select a VPN type:
For IKE VPNs, select the VPN that you configured on the device.
For L2TP VPNs, you must also select the L2TP tunnel that you configured on the
device.
Chapter 8: Configuring VPNs
237
Need help?
Do you have a question about the NETWORK AND SECURITY MANAGER 2010.4 - CONFIGURING SCREENOS DEVICES GUIDE REV 01 and is the answer not in the manual?