
VMware, Inc. 133
B
Thisappendixcontainsconfigurationexamplesforabasicpoint‐to‐pointIPSECVPNconnectionbetweena
vShieldEdgeandaCiscoorWatchGuardVPNontheotherend.
Thisappendixincludesthefollowingtopics.
“BasicScenario”onpage 133
“Terminology”onpage 134
“IKEPhase1andPhase2”onpage 134
“ConfiguringthevShieldEdgeVPNParameters”onpage 135
“UsingaCisco2821IntegratedServicesRouter”onpage 137
“UsingaCiscoASA5510”onpage 139
“UsingaWatchGuardFireboxX500”onpage 141
“Troubleshooting”onpage 141
Basic Scenario
Forthisscenario,thevShieldEdgeconnectstheinternalnetwork192.168.5.0/24totheInternet.ThevShield
Edgeinterfacesareconfiguredasfollows:
ExternalInterface:10.115.199.103
InternalInterface:192.168.5.1
Theremotegatewayconnectsthe172.16.0.0/16internalnetworktotheInternet.Theremotegatewayinterfaces
areconfiguredasfollows:
ExternalInterface:10.24.120.90/24
InternalInterface:172.16.0.1/16
Figure B-1. vShield Edge connecting to a remote VPN gateway
vShield Edge VPN Configuration
Examples
B
Kommentare zu diesen Handbüchern