. . . . .
V I R T U A L P R I V A T E N E T W O R K S
Configuring Manual Key VPN Implementations
Version 3R2
Security Appliance User Guide
7-11
set policy top name vpnto_sanfrancisco from trust to
untrust nyo San Francisco any tunnel vpn sfo_nyo
set policy top name vpnfrom_sanfrancisco from untrust to
trust San Francisco nyo any tunnel vpn sfo_nyo
save
G U I E X A M P L E : M A N U A L K E Y V P N I M P L E M E N T A T I O N , N E W Y O R K
O F F I C E
Interfaces
1
Network > Interface > Edit (for ethernet0)
2
Enter the following, then click
Apply
:
Zone Name: Trust
IP Address/Netmask: 192.168.100.1/24
Interface Mode: NAT
3
Network > Interface > Edit (for eth1): Enter the following, then click
Apply
:
Zone Name: Untrust
IP Address/Netmask: 162.198.10.1/24
Addresses
1
Objects > Address Objects > Add Object
2
Enter the following, then click
Apply
:
Name: NYO
IP Address/Netmask: 192.168.100.0/24
Zone: Trust
3
Objects > Address Objects > Add Object
4
Enter the following, then click
Apply
:
Name: San Francisco
IP Address/Netmask: 10.0.0.0/24
Zone: Untrust