Avaya IP Office (R3.0) User Manual page 50

Virtual private networking
Hide thumbs Also See for IP Office (R3.0):
Table of Contents

Advertisement

Page 50 - Configuration Examples
Task
Step 3
For IP Office Location A create an IPSec
tunnel (see The IP Security Menu on page 24).
Main tab:
Local Configuration:
• Name = IPSec_Tunnel
• IP Address = 192.168.42.0
• IP Mask = 255.255.255.0
• Tunnel Endpoint IP Address = <10.10.20.1>
Remote Configuration:
• IP Address = 192.168.43.0
• IP Mask = 255.255.255.0
Tunnel Endpoint IP Address = <10.10.20.2>
Step 4
For IP Office Location B create an IPSec
tunnel (see The IP Security Menu on page 24).
Main tab:
Local Configuration:
• Name = IPSec_Tunnel
• IP Address = 192.168.43.0
• IP Mask = 255.255.255.0
• Tunnel Endpoint IP Address = <10.10.20.2>
Remote Configuration:
• IP Address = 192.168.42.0
• IP Mask = 255.255.255.0
• Tunnel Endpoint IP Address = <10.10.20.1>
Step 5
For both IP Office Location A and Location B,
perform the following:
IKE Polices tab
• Shared Secret = password
• Exchange Type = ID port
• Encryption = DES
• Authentication = MD5
• DH Group = Group 2
• Life Type = Seconds
• Life = 86400
Step 6
For both IP Office Location A and Location
B,perform the following:
IPSec Policies tab
• Protocol = ESP
• Encryption = DES
• Authentication = MD5
• Life Type = Seconds
• Life = 86400
Step 7
Checking to see if the tunnel is up.
For VoIP configuration refer to Part 3 VoIP Configuration on page 53.
Page 50 - Configuration Examples
Part 2: VPN configuration
Description
A discrete name for the IPSec tunnel is
required.
The Local Configuration for the IP
Address/Mask and Remote IP Address/Mask
determines the range of IP addresses to be
secured through the tunnel.
The Local Tunnel Endpoint IP Address is the
near end tunnel endpoint. Hence, for
Location A, this will be 10.10.20.1, which is
the WAN IP address of Location A.
The Remote Tunnel Endpoint IP Address is
the far end tunnel endpoint. Hence, for
Location A, this will be 10.10.20.2, which is
the WAN IP address of Location B.
See notes in step 3 above.
The Local Tunnel Endpoint IP Address is the
near end tunnel endpoint. Hence, for
Location B, this will be 10.10.20.2, which is
the WAN IP address of Location B.
The Remote Tunnel Endpoint IP Address is
the far end tunnel endpoint. Hence, for
Location B, this will be 10.10.20.1, which is
the WAN IP address of Location A.
These parameters set the Phase 1
negotiation for the SA.
These parameters set the Phase 2
negotiation for the SA.
Use the SysMonitor application to check if
ESP packets are generated when ICMP ping
requests are sent between the subnets.
40DHB0002UKER Issue 3 (4th February 2005)
IP Office (R3.0)

Advertisement

Table of Contents
loading

This manual is also suitable for:

Ip office virtual private networking

Table of Contents