SonicWALL Internet Security Appliances User Manual

Page 208

Advertising
background image

SonicWALL VPN Page 209

10. Click Add New Network. Enter the IP address, “192.168.22.1” in the Range Start field. Enter

the IP address, “192.168.22.254” in the Range End field. This Range End value is appropriate
even if NetBIOS broadcast support is enabled. Leave the subnet mask field blank. Click Update.

11. Click Advanced Settings and select the features that apply to the SA.

Enable Windows Networking (NetBIOS) broadcast - if the remote clients use Windows Network
Neighborhood to browse remote networks.
Apply NAT and firewall rules - to apply NAT and firewall rules to the SA or just firewall rules if in
Standard mode.
Route all internet traffic through this SA - if forcing Internet traffic from the WAN to use this SA
to access a remote site.
Default LAN Gateway if specifying the IP address of the default LAN route for incoming IPSec
packets for this SA. This is used in conjunction with the Route all internet traffic through this SA
check box.
VPN Terminated at LAN, DMZ, or LAN/DMZ- select one of the three terminating points for the
VPN tunnel.

12. Click OK, and then click Update.

Configuring the Remote SonicWALL

To configure the remote SonicWALL, use the following steps:
1. Configure the network settings for the firewall using the Network tab located in the General

section.

2. Click Update and restart the SonicWALL if necessary.
3. Click VPN, then the Configure tab.
4. Create a name for the remote office SA, for example, Remote Office.
5. Enter the main office WAN IP address for the IPSec Gateway Address.
6. Enter the Outgoing SPI of the main office in the Incoming SPI field.
7. Enter the Incoming SPI of the main office in the Outgoing SPI field.
8. Select Strong Encrypt (ESP 3DES) as the Encryption Method.
9. Enter the Encryption Key from the Main Office configuration.
10. Click Add New Network. Enter the IP address, “192.168.11.1” in the Range Start field. Enter

the IP address, “192.168.11.254” in the Range End field. This Range End value is appropriate
even if NetBIOS broadcast support is enabled. Leave the subnet mask field blank. Click Update.

11. Click Advanced Settings and select the features that apply to the SA.

Enable Windows Networking (NetBIOS) broadcast - if the remote clients use Windows Network
Neighborhood to browse remote networks.
Apply NAT and firewall rules - to apply NAT and firewall rules to the SA or just firewall rules if in
Standard mode.
Forward packets to remote VPNs - if creating a “hub and spoke” network configuration

Advertising