Planet MH-5000 User Manual page 127

Multi-homing security gateway
Hide thumbs Also See for MH-5000:
Table of Contents

Advertisement

MH-5000 User Manual
Pre-Shared Key
Configuring the VPN Hub for Main Office
Step 8.
Add a Firewall rule
Suppose Main Office has already added two VPN
tunnels to communicate with two branch offices.
Now, the Main Office has to add a firewall rule to
allow IPSec packets to come from internet.
Before adding a firewall rule, please make sure to
add the addresses first.
Please make sure that the Firewall is enabled.
Select WAN1-to-WAN1 to display the rules of this
direction. The default action of this direction is
Block with Logs. We have to allow the VPN
traffic from the WAN1 side to enter another
WAN1 side. So we click the Insert button to
add a Firewall rule before the default rule.
Step 9.
Customize a Firewall rule from
Spoke1 to Spoke2
Enter the Rule Name as AllowVPNA, Source IP
as Spoke_1 (192.168.40.0), and Dest. IP as
Spoke_2(192.168.88.0). Click Apply to
store this rule.
If you have not yet configured the Source IP, Dest
IP or Service objects. Please refer Chapter 9 for
the setting information first.
Step 10. Customize a Firewall rule from
Spoke 2 to Spoke 1
Enter the
as
Rule Name
AllowVPN
as Spoke_2
(192.168.88.0), and Dest. IP
as Spoke_1 (192.168.40.0)
store this rule.
1234567890
Table 15-1 The IKE tunnel configuration
ADVANCED SETTINGS > Firewall > Edit Rules
ADVANCED SETTINGS > Firewall > Edit Rules > Insert
ADVANCED SETTINGS > Firewall > Edit Rules > Insert
B,
Source IP
. Click
to
Apply
Virtual Private Network – Hub and Spoke VPN
1234567890
125
1234567890
Chapter 15
1234567890

Advertisement

Table of Contents
loading

Table of Contents