Allied Telesis AR440S Network Card User Manual


 
Page 7 | AlliedWare™ OS How To Note: VPNs for Corporate Networks
2. The branch office
1
router, which provides:
z an ADSL PPPoA Internet connection. Note that the PPPoA connection requires an
ATM DSLAM
z VPN access to headquarters using IPsec tunnel mode
z incoming VPN client access from roaming users
z a fixed Internet address so that roaming VPN clients have a known target for the
branch office end of the VPN
3. The branch office 2 router, which provides:
z an ADSL PPPoEoA Internet connection
z VPN access to headquarters using IPsec tunnel mode
z a dynamically assigned Internet address, as used by many ISPs.
Color coding For your convenience, the configurations are color-coded:
Before you start
Don’t forget to check you have the following when planning your secure VPN network:
1. ISAKMP shared key
2. Fixed public IP addresses to use where appropriate
3. The IP subnets to use on private LANs at the branch and headquarters sites
4. The range of IP addresses to use in the IP pools for allocating to the remote users
5. Usernames and passwords for the remote users
6. IP addresses from which SSH connections can be made to the routers (if applicable)
7. Connection parameters for the ADSL connections at the branch offices
8. VPN client PCs set up, as described in the How To Notes in "Related How To Notes" on
page 2.
headquarters
branch office
1
branch office 2