HP (Hewlett-Packard) MSM7XX Switch User Manual


 
Internet
Working with VPNs
Securing service controller communications to remote VPN servers
Securing service controller communications
to remote VPN servers
To secure the communications between the service controller and remote VPN servers,
create a VPN tunnel from the service controller to the remote VPN server.
The sample topology seen earlier serves as an example for the sample configurations that
follow. In this example, the service controller Internet port has an IP address of 21.1.14, the
remote VPN server is at 3.1.1.2, and the secure resource is at 10.0.0.2.
Service controller
Router
Internet
port
24.1.1.4
LAN
port
7.1.1.1
VPN Server/
Gateway
(Peer)
3.1.1.2
10.0.0.0
10.0.0.2
Secure
resource
7.1.1.2
7.1.1.2
APWireless
Client
7.1.1.3
5.1.1.2
5.1.1.2
APWireless
Client
5.1.1.3
Router
Create a VPN tunnel like this either by configuring an IPSec policy or configuring the PPTP
client.
Caution The VPN tunnel should not be used to transport user traffic. The tunnel should only be used
to carry management traffic (RADIUS, SNMP, and management sessions). See Keeping user
traffic out of the VPN tunnel on page 12-11.
12-7