beautypg.com

PLANET MH-2300 User Manual

Page 243

background image

Gigabit Multi-Homing VPN Security Gateway

MH-2300

243

Port 1 is defined as LAN 1 (192.168.20.1) and is connected to the LAN subnet
192.168.20.x/24.
Port 2 is defined as WAN 1 (211.22.22.22) and is connected to the Internet via
the ADSL modem (ATUR).
Port 3 is defined as WAN2 (211.33.33.33) and is connected to the Internet via
the ADSL modem (ATUR).

Two IPSec VPN tunnels are established between Company A and B over their
corresponding WAN 1 and WAN 2.

This example will be using two units of MH-2300 to establish two VPN tunnels
with GRE encapsulation as follows:

For Company A, set as shown below:

Step 1. Under

Policy Object > VPN > IPSec Autokey, click New Entry.

The IPSec Autokey Rule Table

Step 2. Enter “VPN_01” in the Name field and then select “Port2 (WAN1)”

for Interface.

Name and Interface Settings

Step 3. Remote Settings: Select “Remote Gateway (Static IP or

Hostname)”, and specify the WAN1 gateway address of Company B.

Remote Settings

Step 4. Select “Pre-Shared Key”for Authentication Method and then type a

key in the Pre-Shared Key String field, e.g., “123456789”.

Authentication Method Settings