User`s guide
BLACK BOX® CS Installation, Administration, and User’s Guide 13
VPN
VPN
The CS administrator can set up VPN connections to establish an encrypted
communications between the CS and a host on a remote network. The
encryption creates a security tunnel for a dedicated communications.
You can use the VPN features on CS to create the following types of
connections:
• A secure tunnel between CS and a gateway at a remote location so every
machine on the subnet at the remote location has a secure connection with
CS.
• Create a secure tunnel between CS and a single remote host
To set up a security gateway, you can install IPSec on any machine that does
networking over IP, including routers, firewall machines, application servers,
and end-user machines.
The ESP and AH authentication protocols are supported. RSA Public Keys
and Shared Secret are also supported.
For detailed information and procedures to configure a VPN connection, see
“VPN Connections” on page 176.
Packet Filtering on CS
The CS administrator can configure the box to filter packets like a firewall. IP
filtering is controlled by chains and rules.
Structure of IP Filtering
The Firewall Configuration form in the Web Manager is structured on two
levels:
• The view table of the “Firewall Configuration” form which contains a list
of chains.
• The chains which contain the rules that control filtering.