Niyang blog

Friday, October 15, 2004

Set Netscreen VPN by Manual Key

Local PC ip : 192.168.0.30 (Trust)
Local VPN ip : 172.31.188.1 (Untrust)
Remote PC ip : 192.168.50.30 (Trust)
Remote VPN ip : 172.31.187.1 (Untrust)
Step 1 : Set Trust,Untrust ip and gateway in network setting
Step 2 : Add information of tunnel (interface: untrust ) Unnumbered : untrust
Step 3 : Add Object-- Trust (subnet) Remote lan (subnet)
Step 4 : Add vpn mannual key Security index --local,remote
Gateway --opposite untrust
Outgoing interface --untrust
Encryption algorithm --3DES-CBC
General key by pwd --From order
Authentication Algorithm --SHA-1
General key by pwd --From order
Tunnel interface -- Designation
Step 5 : Routing table trust : 0.0.0.0/0 interface : untrust gateway : 172.31.187.254 trust : 192.168.0.0/24 interface : tunnel.1 gateway : 0.0.0.0/0
Step 6 : Policies 1. from trust to untrust Action : Permit
2. from untrust to trust
Action : Permit

0 Comments:

Post a Comment

<< Home