Ascend Archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

(ASCEND) VPN with IPSec



Hi,

I want to establisch a IPSec tunnel between two private networks over
the internet, and I do need some answers. Here is my configuration:


                        /192.222.100.x (Dynamic IP-Addr.)       
                       /
         +-----------+/                       +------------+
	 |Pipeline 50|------- Internet -------|Pipeline 220|
	 +-----------+                       /+------------+ 
 192.168.10.1 |                  192.50.20.1/       | 192.168.20.1      
	      |                                     |
	      |                                     |
       |      |    |                       |        |   |
     ---------+----------                -----------+----------- 
           |     |                               |          |

     LAN A: 192.168.10.x/24               LAN B: 192.168.20.x/24
     

IPSec and SCF (Secure Connect Firewall) are enabled on both pipelines.
The pipeline 50 is running 6.0.10 and the 220 is running 6.1.x. The
computers in LAN A and B do not need a direct connection to the
internet, i just want to route packets between these two networks over
the internet as if they were connected by a simple ip router. The
traffic should be encrypted. I studied the SecureConnect Manager
userīs guide, but I still do not know how to configure the
firewalls/routers. Do I have to enable NAT or RTNAT? I do not think
so. How can a configure e.g. the pipeline 50, to route packets from
192.168.10.x to 192.168.20.x over the internet? By means of static
routes? In both networks I use private adresses which are normally not
routed in the internet. How does the IPSec (VPN) tunnel configuration
look like?

Best wishes     

Stephane Lux
-- 
Stephane Lux (chipie@pironet.de)

++ Ascend Users Mailing List ++
To unsubscribe:	send unsubscribe to ascend-users-request@bungi.com
To get FAQ'd:	<http://www.nealis.net/ascend/faq>