User manual
Virtual Private Networking
230
Setup an IPSec tunnel between the secondary Internet IP Addresses (209.0.1.1 <->
210.0.1.1). Default values are used in the configuration unless otherwise specified
below:
Headquarters SG configuration:
Tunnel name: SecondaryLink
Enable this tunnel: Checked
Local interface: DMZ port
Route to remote endpoint: DMZ port's gateway
The remote party's IP address: 210.0.1.1
Local network: Address of DMZ port
Remote network: Remote endpoint
Branch Office SG configuration:
Tunnel name: SecondaryLink
Enable this tunnel: Checked
Local interface: DMZ port
Route to remote endpoint: DMZ port's gateway
The remote party's IP address: 209.0.1.1
Local network: Address of DMZ port
Remote network: Remote endpoint
Setup corresponding GRE tunnels over the IPSec tunnels configured in steps 1 and 2
(209.0.0.1 <-> 210.0.0.1 and 209.0.1.1 <-> 210.0.1.1). Default values are used in the
configuration unless otherwise specified below:
Headquarters SG configuration:
GRE tunnel for primary link:
GRE tunnel name: PrimaryLink
Remote address: 210.0.0.1
Local address: 209.0.0.1
Firewall class: LAN
GRE tunnel for secondary link: