Vpn object export checklist – Avaya 3.7 User Manual

Page 159

Advertising
background image

Exporting a VPN object to an extranet

Issue 4 May 2005

159

Figure 51: Exporting a VPN Object to an Extranet

VPN Object export checklist

Table 9

lists what to do before you export a VPN Object. The terms used by

Figure 51

are used

for orientation.

IP Group Object

A

Domain

A

IP Group Object

B

VPN Object

A

Device Object

A

Extranet Device

IP Group Object

A

Domain

B

IP Group Object

B

VPN Object

A

Extranet Device

Device OB

IP Group Object

A

is

configured with Device

Object

A

, but Device

Object

A

does not get

exported to Domain

B

.

Domain

A

created the VPN Object that was

exported to an extranet (Domain

B

). This

method allows members of VPN Object

A

and VPN

Object

B

to privately share network resources

and communicate.

VPN Object

A

is exported to Domain

B

.

VPN Object

A

is built with IP GroupA and IP

GroupB. IP Group

A

is configured with IP

address masks for terminal devices in

Domain

A

, and IP GroupB is configured with

IP address masks for terminal devices in

Domain

B

.

IP Group Object

B

is

configured with an

Extranet Device. The

device is configured with

the IP address of Device

Object

B

.

Device Object

B

is configured from

Domain

B

.The Extranet Device and Device

Object

B

have the same IP addresses,

therefore, traffic to Domain

A

will

automatically use Device Object

B

for

VPN services.

Table 9: VPN Object Export Checklist

Task

For certificate based IKE VPNs, administrators of Domain

A

and

Domain

B

assure that all security gateways which are participating in the

extranet connection are using the correct certificates (

IKE Certificate

Usage on page 240

).

Administrators of Domain

A

and Domain

B

agree that Administrator

A

create the VPN Object that is exported to Domain

B

.

1 of 2

Advertising