User`s guide

XSR Users Guide 277
Chapter 11 Configuration Examples
Configuring the Virtual Private Network
Configuration Examples
XSR with VPN - Central Gateway
In this scenario, as illustrated in Figure 49, a Central VPN gateway is
configured to perform the following:
Terminate NEM and Client mode tunnels
Terminate remote access L2TP/IPSec tunnels
Terminate PPTP remote access tunnels
OSPF routing with the next hop corporate router on the trusted VPN
interface
DF bit clear on the public VPN interface to handle large non-
fragmentable IP frames
OSPF routing over the multi-point VPN interface for other site-to-site
tunnels
Assign the first IP address of the pool to the multi-point VPN interface.
Figure 49 EZ-IPSec Client, XP Client and Gateway Topology
Branch Office
XSR
FastEthernet 1
172.16.1.1
RoboPez
EZ-IPSec client
Remote Access
Windows XP - L2TP/IPSec or PPTP Client
PPPoE
interface
Central Site
XSR
FastEthernet 2
141.154.196.87
FastEthernet 1
10.120.112.6
Terminates EZ-IPSec Client Mode
Terminates L2TP/IPSec clients
Robo6
Internet
CA server