Zyxel ZyWALL USG 20W — настройка IPSec VPN с резервированием для офисов [110/185]

Превью страниц Страница 110 / 185
Zyxel ZyWALL USG 20W [110/185] Zywall usg support notes
ZyWALL USG Support Notes
110
All contents copyright (c) 2010 ZyXEL Communications Corporation.
In the scenario below, HQ USG has two WAN IP, WAN1 and WAN2. Branch office
builds IPSec VPN tunnel to HQ. IPSec VPN HA is enabled on branch USG. Primarily
branch builds IPSec VPN tunnel to HQ WAN1. In case WAN1 is down, since VPN
HA is enabled on branch, branch will build tunnel to HQ WAN2. Thus the branch
office can enjoy a secured and reliable tunnel to HQ.
Since WAN1 has higher speed, it‟s HQ‟s primary WAN connection. We can enable
VPN Fall Back on the branch. Once WAN1 is up again, branch will switch the VPN
tunnel to WAN1 again.
4.1.2. Configuration Steps
IP address information on HQ and branch office USG:
HQ USG:
WAN1 IP: 200.0.0.1
WAN2 IP: 201.0.0.1
Local subnet: 192.168.1.0/24
Branch USG:
WAN IP: 202.0.0.1
Local subnet: 192.168.4.0/24
On HQ USG:
Step1. Go to Monitor > System Status > Interface Status, check the interface IP
information, which will be used later in IPSec VPN configuration.

Содержание

465

Узнайте, как настроить IPSec VPN с резервированием для надежного соединения между головным офисом и филиалом. Подробные шаги и рекомендации.

Кешбек Менеджер