H o w

Transcription

H o w
How to Configure LAN to LAN IPSec Tunnel between
Vigor2960 and Other Router (Main Mode)
Here provides an example about LAN to LAN IPSec tunnel established between Vigor2960 and
Vigor2710.
Configuring Vigor2960
1.
Access into the web configurator of Vigor2960 and open VPN and Remote Access >> LAN
to LAN Profiles to add a new VPN configuration.
Type the Pre-shared key and choose a WAN Profile. Specify Local IP/Subnet Mask with
1
192.168.29.0/24. The Remote Host should be Vigor 2710's WAN IP address; and the Remote
IP/Subnet Mask should be192.168.2.0/24.
2.
Click Apply to save the settings and return to previous page.
Configuring Vigor2710
1.
2.
In Vigor2710, build the VPN connection to connect with Vigor2960. Please open the web
configurator of Vigor2710 and open VPN and Remote Access >> LAN to LAN.
z
First, please type the name of such VPN connection in the field of Profile Name (e.g.,
2960).
z
Check the box of Enable this profile.
z
Choose Dial-Out as Call Direction and check the box of Always on.
For Dial-Out Settings, please choose IPSec Tunnel and type WAN IP address of Vigor2960 in
the field of Server IP/Host Name for VPN (e.g., 1.169.162.1). Type the same IKE Pre-Shared
Key configured in Vigor2960.
2
3.
For the role of Vigor2710 is dialing-out, please skip Dial-In setting. Type the Remote
Network IP and Remote Network Mask of Vigor2960 to complete configuration.
4.
Please check if the VPN connection is built successfully in both devices respectively. For
Vigor2960, open VPN and Remote Access>>IPSec>>Status for viewing the result.
As to Vigor2710, please open VPN and Remote Access>>Connection Management to
confirm the result.
3