Ethernet port configuration – RuggedCom RuggedRouter RX1100 User Manual

Page 159

Advertising
background image

16. Configuring IPsec VPN

Revision 1.14.3

159

RX1000/RX1100™

Add the following firewall rules:

Action

Source-Zone

Destination-Zone

Protocol

Dest-Port

ACCEPT

all

fw

ah

ACCEPT

all

fw

esp

ACCEPT

all

fw

udp

500

ACCEPT

vpn

loc

Restart the firewall to install the rules.

16.2.10.6. Ethernet Port Configuration

Because the remote client will be assigned a local IP address but is reachable only through the IPSec
connection, proxy ARP must be employed. Activate proxy ARP on the Ethernet interface that hosts
the local network (here eth1) via the Networking Menu, Ethernet sub-menu boot time entry Proxy
ARP setting
. When a host on eth1 arps for the remote client address, the router will answer on behalf
of the client.

Advertising