P-202H Plus v2 Support Notes
The IP addresses we use in this example are as shown below.
Branch_A Headquarter Branch_B
WAN:202.3.1.1
LAN:192.168.3.1
WAN:202.1.1.1
LAN:192.168.1.1
WAN:202.2.1.1
LAN:192.168.2.1
LAN of Branch_A LAN of Headquarter LAN of Branch_B
192.168.3.0/24 192.168.1.0/24 192.168.2.0/24
1. Setup VPN in branch office A
Because VPN routing enables branch offices to talk to each other via tunnels
concentrated on headquarter. In this step, we configure an IPSec rule in P-202H
Plus v2 (Branch_A) for PCs behind branch office A to access both LAN
segments of headquarter and branch office B. Because the LAN segments of
headquarter and branch office B are continuous, we merge them into one single
rule by including these two segments in Remote section. If by any chance, the
two segments are not continuous, we strongly recommend you to setup different
rules for these segments.
1. Click Advanced, and click VPN tab on the left.
2. On the SUMMARY menu, Select a policy to edit by clicking Edit.
3. On the CONFIGURE-IKE menu, check Active check box and give a name
to this policy.
4. Give this VPN rule a name, Branch_A.
5. Select Key Management to IKE and Negotiation Mode to Main.
All contents copyright © 2006 ZyXEL Communications Corporation.
348