Does the VPN only work between 2 Gnatbox systems? I would like to be able to
dial into my ISP from home (without Gnatbox) and connect to work through a
VPN. Is that possible with Gnatbox at this release?
Van K. Jones
The Clarion-Ledger
-----Original Message-----
From: Paul Emerson [mailto:paul_at_gta_dot_com]
Sent: Saturday, March 18, 2000 11:01 AM
To: Mohamed Jiwa
Cc: gb-users_at_gta_dot_com
Subject: Re: VPN between GB firewalls
Send postings to: gb-users_at_gta_dot_com
Access the list archives at:
http://www.gnatbox.com/gb-users/
----------------------------------
Sure, many of us who work at GTA have GNAT Box systems at home and
have VPN connections to the office, (so we have many VPNs defined).
Setting up more than one remote site is exactly the same as setting
up one.
1. Define the Security Association (VPN)
2. Add a remote access filter to accept the ESP/AH remote connection.
Or simply create 1 filter with an Address Object like "Remote VPN
Sites". Then add the new remote site to the "Remote VPN Sites"
object. This way simply adding/deleting IP addresses to the Object
will handle the Remote Access issue.
3. Create both an inbound and outbound IP Pass Through filter for the
VPN. Once again you can do this with an Object if the rules will be
the same for all sites. Or you can be very specific and create many
rules for inbound/outbound VPN access.
Perhaps there isn't so much written about this in the VPN section,
because it follows most of the same concepts as the filters. I'm
sure we will enhance and update the VPN section after we learn a bit
more of how GNAT Box users approach the VPN.
Paul
>Send postings to: gb-users_at_gta_dot_com
>Access the list archives at:
>http://www.gnatbox.com/gb-users/
>----------------------------------
>Has anyone tried to create a VPN between the GB
>firewalls which consists of more than 2 sites. I would
>like to create a VPN for connecting 5 sites.
>
>There is very little info in the documentation. The
>setup for VPN menu mentiones one remote gateway and
>network.
>
>Mohamed.
>
>__________________________________________________
>Do You Yahoo!?
>Talk to your friends online with Yahoo! Messenger.
>http://im.yahoo.com
>----------------------------------------------
>To Unsubscribe: send mail to majordomo_at_gta_dot_com
>with "unsubscribe gb-users your_email_address
>in the body of the message
--
-------------------------------------------------------------------------
Paul Emerson Tel: +1.407.380.0220 x106
Global Technology Associates, Inc. Fax: +1.407.380.6080
3505 Lake Lynda Drive Mobile: +1.407.310.8564
Suite 109 Pager: +1.888.440.8232
Orlando, Florida 32817 Email: paul_at_gta_dot_com
USA Web: http://www.gta.com
Mobile Email: 407.310.8563_at_messaging.sprintpcs_dot_com
-------------------------------------------------------------------------
----------------------------------------------
To Unsubscribe: send mail to majordomo_at_gta_dot_com
with "unsubscribe gb-users your_email_address
in the body of the message