Top Banner
SSG5 VPN LAN-to-LAN Tunneling HOWTO
18

Ssg5 VPN Lan-To-lan Tunnelling

Nov 18, 2014

Download

Documents

rhisyam

Juniper SSG5 VPN Site to Site LAN config How to
Welcome message from author
This document is posted to help you gain knowledge. Please leave a comment to let me know what you think about it! Share it to your friends and learn new things together.
Transcript
Page 1: Ssg5 VPN Lan-To-lan Tunnelling

SSG5 VPN LAN-to-LAN Tunneling HOWTO

Page 2: Ssg5 VPN Lan-To-lan Tunnelling

Bridge Mode

Bridge Mode

** This configuration is based on PPPoE dialing from SSG5, Modem will be on bridge mode.

Page 3: Ssg5 VPN Lan-To-lan Tunnelling

SSG5 on HQ Configuration

Page 4: Ssg5 VPN Lan-To-lan Tunnelling

PPPoE CONFIG

Tunnel CONFIG

Define the interfaces by selecting Network> Interfaces from the left panel menu. The tunnel interface is created by selecting Tunnel IF from the drop down menu then Cliking New

Page 5: Ssg5 VPN Lan-To-lan Tunnelling

Network Interface List

Destination Routing List

Page 6: Ssg5 VPN Lan-To-lan Tunnelling

AUTOKEY IKE GATEWAY CONFIG

Page 7: Ssg5 VPN Lan-To-lan Tunnelling

AUTOKEY IKE GATEWAY CONFIG (Advanced)

Page 8: Ssg5 VPN Lan-To-lan Tunnelling

AUTOKEY IKE CONFIG

Page 9: Ssg5 VPN Lan-To-lan Tunnelling

AUTOKEY IKE CONFIG (Advanced)

Page 10: Ssg5 VPN Lan-To-lan Tunnelling

SSG5 on Branch Configuration

Page 11: Ssg5 VPN Lan-To-lan Tunnelling

PPPoE CONFIG

Network Interface List

Page 12: Ssg5 VPN Lan-To-lan Tunnelling

Tunnel CONFIG

Define the interfaces by selecting Network> Interfaces from the left panel menu. The tunnel interface is created by selecting Tunnel IF from the drop down menu then Cliking New

Page 13: Ssg5 VPN Lan-To-lan Tunnelling

AUTOKEY IKE GATEWAY CONFIG

Page 14: Ssg5 VPN Lan-To-lan Tunnelling

AUTOKEY IKE GATEWAY CONFIG (Advanced)

Page 15: Ssg5 VPN Lan-To-lan Tunnelling

AUTOKEY IKE CONFIG

Page 16: Ssg5 VPN Lan-To-lan Tunnelling

AUTOKEY IKE CONFIG (Advanced)

Page 17: Ssg5 VPN Lan-To-lan Tunnelling

Destination Routing

Page 18: Ssg5 VPN Lan-To-lan Tunnelling

END

ConclusionThese Application Notes have described the administration steps required to configure a Route-Based Site-to-Site VPN tunnel between the HQ and the Branch site.

VerificationUse “ping” from a PC to verify traffic can traverse through the VPN tunnel. PC fromeither the HQ or Branch network should be able to ping another PC on the oppositeside of the VPN tunnel.

rhisyam at gmail dot com