Motorola WS2000 System Reference Manual page 78

Wireless switch
Hide thumbs Also See for WS2000:
Table of Contents

Advertisement

4-28 WS2000 Wireless Switch System Reference Guide
An allow outbound rule:
Src
Dst
Transport
Src port
Dst port
Rev NAT
For IKE, an allow inbound rule:
Src
Dst
Transport
Src port
Dst port
Rev NAT
These rules must be above (higher in priority than) any default or other rules that would process these
packets differently.
4.6.6.2 Do I need to add any special routes on the WS2000 switch to get my VPN tunnel to work?
No. Packets for VPN are tunneled directly to the Remote VPN gateway. As long as a route exists to the
Remote VPN gateway, no other routes are required.
Clients, however, might need extra routing information to tell them to use the WS2000 switch as the
gateway to reach the remote subnet. This is only required if the clients are not using the WS2000 switch as
their default gateway.
4.6.6.3 Can I setup the WS2000 Wireless Switch so that clients can both access the WAN
normally and use the VPN when talking only to specific networks?
Yes. Only packets that are going from the defined local subnet to the remote subnet will be send through the
VPN tunnel. All other packets will be handled by whatever firewall rules are set.
<Local Subnet IP range>
<Remote Subnet IP range>
ANY
1:65535
1:65535
None
<Remote Gateway IP address>
<Wan IP address>
UDP
1:65535
500
None

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents