Brocade Communications Systems Mobility 7131 Series Service Manual Page 520

  • Download
  • Add to my manuals
  • Print
  • Page
    / 520
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 519
508 Brocade Mobility 7131 Access Point Product Reference Guide
53-1002517-01
B
VPN requires certain packets to be passed through the firewall. Subnet Access
automatically inserts these rules for you when you do VPN. Advanced Subnet Access
requires these rules to be in effect for each tunnel.
An 'allow' inbound rule.
An 'allow' outbound rule.
For IKE, an 'allow' inbound rule.
These three rules should be configured above all other rules (default or user defined).
When Advanced LAN Access is used, certain inbound/outbound rules need to be
configured to control incoming/outgoing packet flow for IPSec to work properly (with
Advanced LAN Access). These rules should be configured first before other rules are
configured.
Question 13: Do I need to add any special routes on the access point to get my VPN tunnel to
work?
No. However, clients could need extra routing information. Clients on the local LAN side
should either use the access point as their gateway or have a route entry tell them to use
the access point as the gateway to reach the remote subnet.
Scr <Remote Subnet IP range>
Dst <Local Subnet IP range>
Transpor t ANY
Scr port 1:65535
Dst port 1:65535
Rev NAT None
Scr <Local Subnet IP range>
Dst <Remote Subnet IP range>
Transpor t ANY
Scr port 1:65535
Dst port 1:65535
NAT None
Scr <Remote Subnet IP range>
Dst <WAN IP address>
Transpor t UDP
Scr port 1:65535
Dst port 500
Rev NAT None
Page view 519
1 2 ... 515 516 517 518 519 520

Comments to this Manuals

No comments