D-Link DFL-1000 [99/168] Configuring the autoike key tunnels

D-Link DFL-1000 [99/168] Configuring the autoike key tunnels
DFL-1000 User Manual
9
9
Use the following procedures to create Branch 1 and Branch 2:
Configuring the remote gateways
Configuring the AutoIKE key tunnels
Adding source and destination addresses
Adding encrypt policies
Configuring the remote gateways
Use the procedure Configuring the remote gateway for remote clients.
Use the information in Example remote gateway configuration
to configure remote gateways for the Main
Office, Branch 1, and Branch 2.
Example remote gateway configuration
Field name Main Office information
Branch 1
information
Branch 2
information
Gateway Name
Branch1_gw Branch2_gw Main_Office_gw Main_Office_gw
Remote Gateway
Static IP Address Static IP Address Static IP Address Static IP Address
IP Address
2.2.2.1 2.2.2.2 1.1.1.1 1.1.1.1
Mode
Main (ID
Protection)
Main (ID
Protection)
Main (ID Protection) Main (ID Protection)
P1 Proposal
1- Encryption
3DES 3DES 3DES 3DES
Authentication
SHA1 SHA1 SHA1 SHA1
DH Group
5 5 5 5
Keylife
28800 seconds 28800 seconds 28800 seconds 28800 seconds
Authentication (Pre-shared
Key)
ddcHH01887d ddcHH01887d ddcHH01887d ddcHH01887d
Local ID
Blank Blank Blank Blank
NAT-traversal
Not selected Not selected Not selected Not selected
Keepalive Frequency
Blank Blank Blank Blank
Configuring the AutoIKE key tunnels
Configure a separate AutoIKE key tunnel for the hub and for each spoke. These tunnels will use the
remote gateways that you created in the procedure Configuring the remote gateways
.
Use the procedure Configuring the AutoIKE key tunnel for a remote client
.
Use the information in Example AutoIKE key tunnel configuration
to configure the AutoIKE key tunnels.
Example AutoIKE key tunnel configuration
Field name Main Office information
Branch 1
information
Branch 2
information
Tunnel Name
Branch1_VPN Branch2_VPN Main_Office_VPN Main_Office_VPN
Remote Gateway
Branch1_gw Branch2_gw Main_Office_gw Main_Office_gw
P2 Proposal
1- Encryption
3DES 3DES 3DES 3DES
Authentication
SHA1 SHA1 SHA1 SHA1
Enable replay detection
Select Select Select Select

Содержание

Скачать