D-Link DFL-1000 [84/168] Ipsec vpn configuration examples

D-Link DFL-1000 [84/168] Ipsec vpn configuration examples
DFL-1000 User Manual
84
IPSec VPN configuration examples
This chapter describes the following IPSec VPN configuration examples:
AutoIKE key VPN between two networks
AutoIKE key VPN for remote clients
Dialup VPN
Manual key VPN between two networks
Manual key VPN for remote clients
Hub and spoke VPN (VPN concentrator)
AutoIKE key VPN between two networks
Example VPN between two internal networks shows that you can use the DFL-1000 NPG to protect a
branch office and a small main office. Both of these DFL-1000 NPGs can be configured as IPSec VPN
gateways to create the VPN that connects the branch office network to the main office network.
You can use any DFL-1000 NPG configured as an IPSec VPN gateway to protect the branch office or
main office, depending on the capacity that you require. Alternatively, one of the networks can be
protected by a third-party VPN gateway that supports IPSec and AutoIKE key.
The example shows a VPN between two internal networks, but you can also create VPNs between an
internal network behind one VPN gateway and a DMZ network behind another or between two DMZ
networks. The networks at the ends of the VPN tunnel are selected when you add source and destination
addresses to the encrypt policy.
The example also shows the two DFL-1000 NPGs connecting to each other through their external
interfaces and across the Internet. However, the DFL-1000 NPGs can connect to each other either
through their external or their DMZ interfaces. The interfaces through which the DFL-1000 NPGs
communicate are selected when you add destination addresses to the encrypt policy.
The following procedures show an example of how to configure an IPSec AutoIKE key VPN between two
internal networks:
Configuring the remote gateway for a remote network
Configuring the AutoIKE key tunnel for a remote network
Adding source and destination addresses for a network-to-network VPN
Adding an encrypt policy for a network-to-network VPN

Содержание

Скачать