Page 261 / 342 Scroll up to view Page 256 - 260
Setting Up the Nokia IP45 Security Platform as a VPN Server
Nokia IP45 Security Platform User’s Guide v4.0
261
3.
Enter a pre-shared secret to use to secure the L2TP IPSec tunnel in the Preshared Secret text
box.
4.
To enable or disable, check or uncheck the Bypass default firewall policy. By default, this
option is enabled.
5.
Click Apply.
The L2TP settings are saved.
You can set the L2TP settings by also using the command-line interface. For more information
about L2TP VPN server commands, see the
Nokia IP45 Security Platform CLI Reference Guide
Version 4.0.
To allow SecuRemote users from the Internal network
1.
Choose VPN from the main menu.
2.
Click Allow SecuRemote users to connect from my internal networks on VPN> VPN Server
GUI page.
Page 262 / 342
15
Working with VPNs
262
Nokia IP45 Security Platform User’s Guide v4.0
The following page opens.
3.
Click Bypass default firewall policy checkbox, to bypass firewall rules.
4.
Click Apply.
Note
If you configured the internal VPN Server, install SecuRemote on the desired internal
network computers.
To Install SecuRemote
1.
Choose VPN from the IP45 main menu.
2.
Click VPN Server.
The SecuRemote VPN Server page opens.
3.
Click
Download
link to download SecureRemote.
4.
Follow the wizard instructions to complete the installation.
Configuring Remote Access VPNs
The following procedures describe how to configure a remote access VPN and VPN site.
To configure a remote access VPN
1.
Choose VPN from the main menu, and click the VPN Sites tab.
2.
Click New Site at the bottom of the page.
The IP45 VPN site wizard appears.
3.
If you select Remote Access VPN, the VPN Gateway Address dialog box appears.
Page 263 / 342
Configuring Remote Access VPNs
Nokia IP45 Security Platform User’s Guide v4.0
263
To configure a remote access VPN site
1.
Enter the IP address of the VPN gateway.
2.
Click Next.
3.
The VPN Network Configuration window opens.
4.
Do one of the following:
±
To obtain the network configuration by downloading it from the VPN site, select
Download Configuration. This option automatically configures your VPN settings by
downloading the network topology definition from the VPN server.
Note
You can download the network configuration only if you are connecting to a Check Point
VPN-1 or to the Nokia IP45 security platform.
±
To provide the network configuration manually, select Specify Configuration.
±
To route all network traffic through the site, including Internet traffic, select Route All
Traffic in the GUI wizard.
This option increases the network security. For example, if your VPN consists of a central
office and a number of remote offices, and the remote offices are allowed to access the
Internet resources through the central office only, you can choose route all traffic from the
remote offices through the central office.
Note
You can configure only one VPN site to route all traffic.
5.
Click Next.
If you chose Download Configuration or Route All traffic, the Authentication Method
window opens.
6.
Choose the authentication method.
Page 264 / 342
15
Working with VPNs
264
Nokia IP45 Security Platform User’s Guide v4.0
7.
If you choose Specify Configuration, a second VPN Network Configuration dialog box
appears. Do the following:
a.
In the Destination network column, enter up to three destination network addresses at the
VPN site to which you want to connect.
b.
In the Subnet mask column, select the subnet masks for the destination network
addresses.
Note
Obtain the destination networks and subnet mask addresses from the VPN gateway
system administrator.
c.
In the Configure Backup Gateway column, type the name of the VPN gateway to use if
the primary VPN gateway fails.
Note
The backup gateway can be configured only if you are using Check Point Multiple Entry
Point. For information about how to configure the primary and secondary Check Point
management stations, see the
Check Point Multiple Entry Point
document
.
d.
Click Next.
The Authentication method window opens. Choose the authentication method.
8.
Click Next.
The VPN Login window opens.
9.
Do one of the following:
a.
To configure the site for manual login, select Manual Login. Enter a username and
password to be used for logging on to the VPN site.
b.
To enable the IP45 to log on to the VPN site automatically, select Automatic Login.
Page 265 / 342
Configuring Remote Access VPNs
Nokia IP45 Security Platform User’s Guide v4.0
265
Note
While automatic login provides all of the computers on your home network with constant
access to the VPN site, manual login connects only to the computer you are currently
logged from, and only when the appropriate username and password are entered. The
automatic login option in the GUI is supported for Nokia IP45 Satellite X and manual
login is available for Nokia IP45 Tele license.
For more information about automatic and manual login, see
“Logging On to a VPN Site”
on page 271.
10.
Enter the username and password.
Note
You can use a maximum of 19 characters for username and a maximum of 31
characters for password.
11.
Click Next
The Connecting window opens.
The Contacting VPN Site window opens.
12.
Click Next.
Proceed to
“Completing Site Creation”
on page 268.
Configuring Site-to-Site VPN
If you select Site-to-Site VPN from VPN> VPN Sites > New Site page, the VPN Gateway
Address window opens.

Rate

3.5 / 5 based on 2 votes.

Popular Nokia Models

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top