User's Manual

Table Of Contents
VPN
Configuring the Site-to-Site VPN
Cisco ISA500 Series Integrated Security Appliance Administrator Guide 246
8
Configuring the Site-to-Site VPN
The Site-to-Site VPN tunnel connects two routers to secure traffic between two
sites that are physically separated.
Figure 10 Site-to-Site VPN
This section describes how to configure a Site-to-Site VPN tunnel. It includes the
following topics:
Configuration Tasks to Establish a Site-to-Site VPN, page 246
General Site-to-Site VPN Settings, page 247
Configuring the IPSec VPN Policies, page 248
Configuring the IPSec IKE Policies, page 254
Configuring the IPSec Transform Policies, page 256
Configuration Tasks to Establish a Site-to-Site VPN
To establish a Site-to-Site VPN tunnel, complete the following configuration tasks:
Add the subnet IP address objects of the local network and remote
network. See Address Management, page 152.
235142
Site A
ISA500 ISA500
Site B
Inside
10.10.10.0
Outside
209.165.200.226
Outside
209.165.200.236
Inside
10.20.20.0
Personal
computers
Personal
computers
Printer Printer
Internet