D-Link DFL-1000 [70/168] Configuring the member vpns

D-Link DFL-1000 [70/168] Configuring the member vpns
DFL-1000 User Manual
7
0
Action
ENCRYPT
VPN Tunnel
The member VPN tunnel name.
Allow inbound
Select allow inbound.
Allow outbound
Select allow outbound
Inbound NAT
Select inbound NAT if required.
Outbound NAT
Select outbound NAT if required.
See Adding an encrypt policy.
Configuring the member VPNs
For each member VPN, you must create a VPN tunnel to the VPN Concentrator network. This tunnel can
be an AutoIKE key or manual key tunnel.
You must create an encrypt policy that allows inbound and outbound VPN connections between the
member VPN and the Concentrator.
You must create additional encrypt policies that allow inbound and outbound VPN connections between
each of the member VPNs.
The policy between the member VPN and the Concentrator must be arranged in the policy list above the
policies between member VPNs. Each encrypt policy must include the same tunnel name.
To configure each member VPN:
Add a remote gateway if you are adding AutoIKE key tunnels.
See Adding a remote gateway
.
Add an AutoIKE key VPN tunnel and include the remote gateway added in step 1.
See Adding an AutoIKE key VPN tunnel
.
Or, add a manual key VPN tunnel.
See Adding a manual key VPN tunnel
.
Add one encrypt policy between the member VPN and the VPN Concentrator. Use the following
configuration:
Source
Member VPN address.
Destination
VPN Concentrator address.
Action
ENCRYPT
VPN Tunnel
The VPN tunnel added in step 2.
Allow inbound
Select allow inbound.
Allow outbound
Select allow outbound.
Inbound NAT
Select inbound NAT if required.
Outbound NAT
Select outbound NAT if required.
See Adding an encrypt policy.
Add additional encrypt policies between the member VPNs. Use the following configuration:
Source
Local member VPN address.
Destination
Remote member VPN address
Action
ENCRYPT
VPN Tunnel
The VPN tunnel added in step 2.
Allow inbound
Select allow inbound.

Содержание

Скачать