H3C Technologies H3C WX3000E Series Wireless Switches User Manual

Page 862

Advertising
background image

841

d.

Click Apply.

e.

Click the Advanced Setup tab.

f.

Select Permit from the Action list.

g.

Select Source IP Address, and enter 10.1.2.0 and 0.0.0.255 as the source IP address and
mask.

h.

Select Destination IP Address, and enter 10.1.1.0 and 0.0.0.255 as the destination IP address
and mask.

i.

Click Apply.

3.

Configure an IKE peer named peer:

a.

From the navigation tree, select VPN > IKE.

b.

Click the Peer tab.

c.

Click Add.

d.

Enter the peer name peer.

e.

Select the negotiation mode Main.

f.

Enter the remote gateway IP address 1.1.1.1.

g.

Select Pre-Shared Key, and enter the pre-shared key abcde in the Key and Confirm Key fields.

h.

Click Apply.

4.

Create an IPsec proposal named tran1:

a.

From the navigation tree, select VPN > IPSec.

b.

Click the Proposal tab.

c.

Click Add.

d.

From the IPSec Proposal Configuration Wizard page, select Custom mode.

e.

Enter the IPsec proposal name tran1.

f.

Select the packet encapsulation mode Tunnel.

g.

Select the security protocol ESP.

h.

Select the authentication algorithm SHA1.

i.

Select the encryption algorithm DES.

j.

Click Apply.

5.

Create an IPsec policy named map1:

a.

From the navigation tree, select VPN > IPSec.

b.

Click the Policy tab.

c.

Click Add.

d.

Enter the IPsec policy name map1.

e.

Enter the sequence number 10.

f.

Select the IKE peer peer.

g.

Select the IPsec proposal tran1 from the Available Proposal list, and click <<.

h.

Enter the ACL number 3101.

i.

Click Apply.

Advertising