|
|
I am planning a site-to-site tunnel between two NetMAX VPN servers. What do I need to know? |
| Applies to: All versions of NetMAX VPN Server Suite
| |
| In order to create a secure site-to-site tunnel between two NetMAX VPN servers,
you will need to know the following:
Does each NetMAX server have a static IP on the untrusted network through which the tunnel will be created, or does one or both have a dynamc IP?
You will need to know this information to determine whether you will be
creating a Road Warrior connection, or a non-Road Warrior connection.
If both servers have static IP addresses, what are they? If one or both servers have dynamically assigned IP addresses, what is the identity that will be used to create the tunnel?
The identity is in the form of "username@domainname" - where "username"
is a user on the NetMAX receiving connections, and domainname is the
primary domain of the NetMAX receiving connections.
Are there any network access restrictions (firewalls) in place on the NetMAX receiving connections?
Firewalls can complicate the behavior and configuration of VPN tunnels.
The presence of a firewall may require that the administrator of the
NetMAX receiving connections specifically allow communications from the
NetMAX initiating connections, or that NAT be enabled for VPN
communications.
Which network interface is designated as the "external" interface on each server? Will the NetMAX server receiving connections allow VPN communication with hosts in it's own internal network/s, only the server itself, or both? If the NetMAX server receiving connections will provide VPN communications with hosts in it's own internal network/s, what are the network IP and subnet mask for each internal network?
After you answer these questions, follow the steps in the manual for setting up your NetMAX VPN servers.
| |
| address-suppressed |
| Previous: |
|
| Next: |
|
| ||||||||