Specifications

Contents
iv
PIX 515E Security Appliance Getting Started Guide
78-17645-01
CHAPTER
3 Scenario: IPsec Remote-Access VPN Configuration 3-1
Example IPsec Remote-Access VPN Network Topology 3-1
Implementing the IPsec Remote-Access VPN Scenario 3-2
Information to Have Available 3-3
Starting ASDM 3-3
Configuring the PIX 515E for an IPsec Remote-Access VPN 3-5
Selecting VPN Client Types 3-6
Specifying the VPN Tunnel Group Name and Authentication Method 3-7
Specifying a User Authentication Method 3-8
(Optional) Configuring User Accounts 3-10
Configuring Address Pools 3-11
Configuring Client Attributes 3-12
Configuring the IKE Policy 3-13
Configuring IPsec Encryption and Authentication Parameters 3-15
Specifying Address Translation Exception and Split Tunneling 3-16
Verifying the Remote-Access VPN Configuration 3-17
What to Do Next 3-18
CHAPTER
4 Scenario: Site-to-Site VPN Configuration 4-1
Example Site-to-Site VPN Network Topology 4-1
Implementing the Site-to-Site Scenario 4-2
Information to Have Available 4-2
Configuring the Site-to-Site VPN 4-3
Starting ASDM 4-3
Configuring the Security Appliance at the Local Site 4-4
Providing Information About the Remote VPN Peer 4-6
Configuring the IKE Policy 4-7
Configuring IPsec Encryption and Authentication Parameters 4-9
Specifying Hosts and Networks 4-10