D-Link DWC-1000 DWC-1000 User's Guide - Page 93

Configuring VPN Clients, Example of Gateway-to-Gateway IPsec VPN Tunnel

Page 93 highlights

VPN Settings Configuring VPN Clients The wireless controller supports the following types of tunnels: • Gateway-to-gateway VPN. This setup connects two or more wireless controllers to secure traffic between remote sites. Figure 6-1 shows an example of this configuration. • Remote Client (client-to-gateway VPN tunnel). In this setup, the IP address of the remote PC is not known. Therefore, the remote client initiates the VPN tunnel and the gateway acts as a responder. • Remote client behind a NAT controller: In this setup, the client has a dynamic IP address and is located behind a NAT controller. The remote PC client at the NAT controller initiates a VPN tunnel, as the IP address of the remote NAT controller is not known in advance. The gateway Option port acts as a responder. Note: VPN client software is required to establish a VPN tunnel between the wireless controller and remote endpoint. Open source software, such as OpenVPN or Openswan, as well as Microsoft IPsec VPN software can be configured with the required IKE policy parameters to establish an IPsec VPN tunnel. For more information, refer to the documentation for the VPN client software. Figure 6-1. Example of Gateway-to-Gateway IPsec VPN Tunnel Using Two Wireless Controllers Connected to the Internet 93 DWC-1000 Wireless Controller User's Guide

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242

VPN Settings
93
DWC-1000 Wireless Controller User’s Guide
Configuring VPN Clients
The wireless controller supports the following types of tunnels:
Gateway-to-gateway VPN. This setup connects two or more wireless controllers to secure
traffic between remote sites. Figure
6-1 shows an example of this configuration.
Remote Client (client-to-gateway VPN tunnel). In this setup, the IP address of the remote
PC is not known. Therefore, the remote client initiates the VPN tunnel and the gateway
acts as a responder.
Remote client behind a NAT controller: In this setup, the client has a dynamic IP address
and is located behind a NAT controller. The remote PC client at the NAT controller initiates
a VPN tunnel, as the IP address of the remote NAT controller is not known in advance.
The gateway Option port acts as a responder.
Note:
VPN client software is required to establish a VPN tunnel between the wireless
controller and remote endpoint. Open source software, such as OpenVPN or Openswan, as
well as Microsoft IPsec VPN software can be configured with the required IKE policy
parameters to establish an IPsec VPN tunnel. For more information, refer to the
documentation for the VPN client software.
Figure
6-1. Example of Gateway-to-Gateway IPsec VPN Tunnel
Using Two Wireless Controllers Connected to the Internet