Ethernet port configuration – RuggedCom RuggedRouter RX1100 User Manual
Page 159
16. Configuring IPsec VPN
Revision 1.14.3
159
RX1000/RX1100™
Add the following firewall rules:
Action
Source-Zone
Destination-Zone
Protocol
Dest-Port
ACCEPT
all
fw
ah
ACCEPT
all
fw
esp
ACCEPT
all
fw
udp
500
ACCEPT
vpn
loc
Restart the firewall to install the rules.
16.2.10.6. Ethernet Port Configuration
Because the remote client will be assigned a local IP address but is reachable only through the IPSec
connection, proxy ARP must be employed. Activate proxy ARP on the Ethernet interface that hosts
the local network (here eth1) via the Networking Menu, Ethernet sub-menu boot time entry Proxy
ARP setting. When a host on eth1 arps for the remote client address, the router will answer on behalf
of the client.