Chapter 4 Scenario: Site-to-Site VPN Configuration
Implementing the Site-to-Site Scenario
4-10
PIX 515E Security Appliance Getting Started Guide
78-17645-01
Specifying Hosts and Networks
Identify hosts and networks at the local site that are permitted to use this IPsec
tunnel to communicate with the remote-site peer. Add or remove hosts and
networks dynamically by clicking
Add
or
Delete
, respectively. In the current
scenario, traffic from Network A (10.10.10.0) is encrypted by Security
Appliance 1 and transmitted through the VPN tunnel.
In addition, identify hosts and networks at the remote site to be allowed to use this
IPsec tunnel to access local hosts and networks. Add or remove hosts and
networks dynamically by clicking
Add
or
Delete
respectively. In this scenario,
for Security Appliance 1, the remote network is Network B (10.20.20.0), so
traffic encrypted from this network is permitted through the tunnel.
In Step 5 of the VPN Wizard, perform the following steps:
Step 1
In the Source area, choose IP Address from the Type drop-down list.
Step 2
Enter the local IP address and netmask in the IP Address and Netmask fields.
Step 3
In the Destination area, choose IP Address from the Type drop-down list.
Step 4
Enter the IP address and Netmask for the remote host or network.