
123
Chapter 10 - Conguring VPN
ASUS SL1200
The results are:
• The LAN behind ISR1 would be viewed as 192.168.11. 0/24 by the
LAN behind ISR2.
• The LAN behind ISR2 would be viewed as 192.168.12. 0/24 by the
LAN behind ISR1.
The conguration of each of the routers for extranet scenario consists of
the following steps:
• Congure VPN Connection rules.
• Congure Firewall rules to allow inbound and outbound VPN trafc by
performing one-to-one NAT.
• Congure a Firewall Self Access rule to allow IKE packets into the
Internet Security Router.
10.5.2.1 Setup the Routers
On ISR1
1. Congure LAN interface of ISR1 with IP address 192.168.1.1.
2. Configure DHCP pool with IP addresses from 192.168.1.10 to
192.168.1.110 on ISR1.
3. Congure WAN interface of ISR1 with IP address 212.1.1.212.
4. Add a route on ISR1 with gateway as 123.1.1.123.
5. Save the conguration.
On ISR2
1. Congure LAN interface of ISR2 with IP address 192.168.1.1.
2. Configure DHCP pool with IP addresses from 192.168.1.10 to
192.168.1.110 on ISR2.
3. Congure WAN interface of ISR2 for IP address 123.1.1.123.
4. Add a default route on ISR2 with gateway as 212.1.1.212.
5. Save the conguration.
Kommentare zu diesen Handbüchern