Contents
iv
PIX 515E Security Appliance Getting Started Guide
78-17645-01
C H A P T E R
3
Scenario: IPsec Remote-Access VPN Configuration
3-1
Example IPsec Remote-Access VPN Network Topology
3-1
Implementing the IPsec Remote-Access VPN Scenario
3-2
Information to Have Available
3-3
Starting ASDM
3-3
Configuring the PIX 515E for an IPsec Remote-Access VPN
3-5
Selecting VPN Client Types
3-6
Specifying the VPN Tunnel Group Name and Authentication Method
3-7
Specifying a User Authentication Method
3-8
(Optional) Configuring User Accounts
3-10
Configuring Address Pools
3-11
Configuring Client Attributes
3-12
Configuring the IKE Policy
3-13
Configuring IPsec Encryption and Authentication Parameters
3-15
Specifying Address Translation Exception and Split Tunneling
3-16
Verifying the Remote-Access VPN Configuration
3-17
What to Do Next
3-18
C H A P T E R
4
Scenario: Site-to-Site VPN Configuration
4-1
Example Site-to-Site VPN Network Topology
4-1
Implementing the Site-to-Site Scenario
4-2
Information to Have Available
4-2
Configuring the Site-to-Site VPN
4-3
Starting ASDM
4-3
Configuring the Security Appliance at the Local Site
4-4
Providing Information About the Remote VPN Peer
4-6
Configuring the IKE Policy
4-7
Configuring IPsec Encryption and Authentication Parameters
4-9
Specifying Hosts and Networks
4-10