User Guide

Table Of Contents
175
12.15.2 Example of configuring an IPSec VPN
Networking requirement
An enterprise has used the router to set up a LAN and access the internet. Branch employees need
to access the HQ's internal resources through the internet, such as internal data, OA, ERP, CRM,
project management systems.
Solutions
You can set up an IPSec VPN using the router to meet this requirement.
Network topology
Configuration procedure
Security software, such as firewall, may fail the configuration. Therefore, you are recommended
disable them.
Assume that the two routers share the following basic IPSec tunnel information:
Encapsulation Mode: Tunnel
Branch
Headquarter
Router_Branch
Router_HQ
LAN network
Enterprise internal server
Assume that:
WAN port enabled with IPSec: WAN1
WAN1 IP: 202.105.11.22
LAN network segment/subnet mask:
192.168.0.0/24
Assume that:
WAN port enabled with IPSec: WAN1
WAN1 IP: 202.105.88.77
LAN network segment/subnet mask:
192.168.1.0/24