User`s guide
Chapter 10 IPSec VPN Config Screens
LAN-Cell 2 User’s Guide
236
" Remote users (or routers) must use IPSec-compliant software or hardware to
establish a VPN connection with the LAN-Cell. Refer to Proxicast’s
Knowledgebase and TechNotes for examples of configuring specific VPN
client software packages and devices.
10.7.1 Mobile Users Sharing One VPN Rule Example
See the following figure and table for an example configuration that allows multiple mobile
users (A, B and C in the figure) to use one VPN rule to simultaneously access a LAN-Cell
(HQ in the figure). The mobile users do not have domain names mapped to the WAN IP
addresses of their IPSec routers. The mobile users must all use the same IPSec parameters but
the local IP addresses (or ranges of addresses) should not overlap.
Figure 141 Mobile Users Sharing One VPN Rule Example
10.7.2 Mobile Users Using Unique VPN Rules Example
In this example the mobile users (A, B and C in the figure) use IPSec routers (or VPN client
software) with domain names that are mapped to their dynamic WAN IP addresses (use
Dynamic DNS to do this).
Table 85 Mobile Users Sharing One VPN Rule Example
FIELDS MOBILE USER HEADQUARTERS
My LAN-Cell: 0.0.0.0 (dynamic IP address
assigned by the ISP)
Public static IP address
Remote Gateway
Address:
Public static IP address 0.0.0.0 With this IP address only
the user can initiate the IPSec tunnel.
Local Network - Single
IP Address:
User A: 192.168.2.12
User B: 192.168.3.2
User C: 192.168.4.15
192.168.1.10
Remote Network -
Single IP Address:
192.168.1.10 Not Applicable