VPN Applications
1. Abstract
This document explains the requirements and procedures for setting up different
vendor hardware or software to interoperate with the Linksys BEFVP41 VPN Router. These instructions enable you to establish encrypted tunnels to and from the
BEFVP41 with the noted vendors. These requirements and procedures are subject to change based on hardware and software changes by the vendors.
Procedures are available for the following products: ? Gateway to Gateway
? BEFVP41 to other VPN product
- Cisco 1720 - CheckPoint 4.1
- Nortel Contivity 1500 - Win2000 Server - Nokia CC500
- SonicWall TELE2 - WatchGuard SOHOtc
? Host to Gateway
? Mobile user to BEFVP41
- Win2000 professional - WinXP professional
- SafeNet SoftRemoteLT v.6.1.1
? Using dynamic IP address
? Gateway to Gateway ? Host to Gateway
VPN Example using BEFVP41
? BEFVP41 to BEFVP41
? BEFVP41 to other VPN gateway
? BEFVP41 to Host ( VPN client software ) ? Support Multiple Tunnels ? Support Dynamic IP address
Branch Office / Home Headquarter Mobile User IPsec Tunnel Corporate Office Headquarter BEFVP41 multiple tunnels setting example. Tunnel 1 ~ 10: Headquarter ?? Branch Offices Tunnel 11 ~ 30: Headquarter ?? Corporate Offices Tunnel 30 ~: Headquarter ?? Mobile Users / Home Users
2. Gateway to Gateway
Usage :
? Home ?? Office
? Headquarter ?? Branch Office ? Headquarter ?? Corporate Office
BEFVP41 to other VPN product
192.168.1.100
LAN IP: WAN IP:
192.168.2.100
BEFVP41 #1 192.168.1.1 140.111.1.1 140.111.1.2 Tunnel 1 Enable
Cisco / CheckPoint / Nortel / Nokia / …
192.168.2.1 140.111.1.2 140.111.1.1 Tunnel 1 Enable
Default Gateway:
This Tunnel:
Local Secure Group:
Subnet, 192.168.1.0 ,255.255.255.0
Subnet, 192.168.2.0 ,255.255.255.0
Remote Secure Group:
Subnet, 192.168.2.0 ,255.255.255.0
Subnet, 192.168.1.0 ,255.255.255.0
Remote Security Gateway:
140.111.1.2 DES MD5
140.111.1.1 DES MD5 ISAKMP OFF
Encryption:
Authentication: IPSec: PFS:
ISAKMP OFF
2.1 BEFVP41 configuration
? Setup Screen
? VPN Screen