User`s manual
are forwarded to the destination IPSec VPN gateway with a source address of the external interface of the
DFL-500 firewall.
IPSec client connecting to a VPN in the Internet using VPN pass through:
IPSec network to network VPN pass through
Use the following procedure to create the configuration shown in IPSec network to network VPN pass through.
In this configuration, the Internal IPSec VPN gateway connects an Internal network to the destination IPSec
VPN gateway on the Internet. The VPN passes through the DFL-500 firewall.
• Configure the Internal IPSec VPN gateway to connect to the destination IPSec VPN gateway as if the
Internal IPSec VPN gateway is connected directly to the Internet.
• Add the external IP address of the DFL-500 firewall to the destination IPSec VPN gateway. See Adding
addresses.
• Configure the destination IPSec VPN Gateway with a VPN tunnel and policy to accept VPN connections
from a VPN gateway with the static IP address of the external interface of the DFL-500 firewall.
For more information about configuring the VPN client and IPSec VPN Gateway, see Autokey IPSec VPN
between two networks or Manual key exchange IPSec VPN between two networks.
• On the DFL-500 firewall, go to Firewall > Policy .
• Select IPSEC Pass Through and click Apply.
DFL-500 User’s Manual
54