Cisco WS-CE500-24TT Administration Guide - Page 140

Configuring VPN, IPsec VPN Remote Access with a VPN Client

Page 140 highlights

Configuring VPN Configuring an IPsec VPN Tunnel for Remote Access with a VPN Client 7 With the Wizard's default settings, you will need to add VPN users through the IPsec VPN users page after you complete the Wizard. Alternatively, you can edit the IKE policy to allow Extended Authentication (XAUTH) from user records stored on an external authentication server such as a RADIUS server. For detailed information about configuring an IPsec tunnel between an SA500 and Cisco VPN Client, see the Application Note located under Technical Documentation at: www.cisco.com/go/sa500resources. The Cisco VPN client software is available for download at: www.cisco.com/go/ ciscovpnclient. For Windows, select Cisco VPN Client v5.x. For Mac OS, select Cisco VPN Client v4.x. NOTE A 3-year Cisco Small Business Support Service Contract (CON-SBS-SVC2) is required to download the client software. If you don't have one, contact your partner or reseller, or Cisco Support for more information. Figure 6 IPsec VPN Remote Access with a VPN Client DNS Server 10.10.10.163 Security Appliance Internal Inside network 10.10.10.0 Outside Personal Computer Using VPN Software Client Internet Personal Computer Using VPN Software Client 235236 WINS Server 10.10.10.133 Personal Computer Using VPN Software Client STEP 1 Click VPN > IPsec > VPN Wizard, or from the Getting Started (Advanced) page, under IPsec VPN Remote Access, click VPN Wizard. The VPN Wizard window opens. STEP 2 In the About VPN Wizard area, choose Remote Access to allow the security appliance to be accessed by remote PCs that are running VPN client software. STEP 3 In the Connection Name and Remote IP Type area, enter the following information: • What is the new connection name?: Enter a name for the connection. The name is used for management and identification purposes. Cisco SA500 Series Security Appliances Administration Guide 140

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240

Configuring VPN
Configuring an IPsec VPN Tunnel for Remote Access with a VPN Client
Cisco SA500 Series Security Appliances Administration Guide
140
7
With the Wizard’s default settings, you will need to add VPN users through the
IPsec VPN users page after you complete the Wizard. Alternatively, you can edit
the IKE policy to allow Extended Authentication (XAUTH) from user records stored
on an external authentication server such as a RADIUS server.
For detailed information about configuring an IPsec tunnel between an SA500 and
Cisco VPN Client, see the Application Note located under Technical
Documentation at:
www.cisco.com/go/sa500resources
.
The Cisco VPN client software is available for download at:
www.cisco.com/go/
ciscovpnclient
. For Windows, select Cisco VPN Client v5.x. For Mac OS, select
Cisco VPN Client v4.x.
NOTE
A 3-year Cisco Small Business Support Service Contract (CON-SBS-SVC2) is
required to download the client software. If you don’t have one, contact your
partner or reseller, or Cisco Support for more information.
Figure 6
IPsec VPN Remote Access with a VPN Client
STEP 1
Click
VPN > IPsec > VPN Wizard
, or from the Getting Started (Advanced) page,
under
IPsec VPN Remote Access
, click
VPN Wizard
.
The VPN Wizard window opens.
STEP
2
In the
About VPN Wizard
area, choose
Remote Access
to allow the security
appliance to be accessed by remote PCs that are running VPN client software.
STEP 3
In the
Connection Name and Remote IP Type
area, enter the following information:
What is the new connection name?:
Enter a name for the connection. The
name is used for management and identification purposes.
235236
Inside
10.10.10.0
Outside
Security
Appliance
DNS Server
10.10.10.163
WINS Server
10.10.10.133
Internet
Internal
network
Personal Computer
Using VPN Software Client
Personal Computer
Using VPN Software Client
Personal Computer
Using VPN Software Client