Implementing the Site-to-Site Scenario
Figure 4-1
Network Layout for Site-to-Site VPN Configuration Scenario
Site A
Security
Appliance 1
Inside
10.10.10.0
Implementing the Site-to-Site Scenario
Information to Have Available
PIX 515E Security Appliance Getting Started Guide
4-2
Outside
209.165.200.226
Creating a VPN site-to-site deployment such as the one in
to configure two security appliances, one on each side of the connection.
This section describes how to configure the security appliance in a site-to-site
VPN deployment, using example parameters from the remote-access scenario
shown in
Figure
4-1.
This section includes the following sections:
Information to Have Available, page 4-2
•
Configuring the Site-to-Site VPN, page 4-3
•
Before you begin the configuration procedure, gather the following information:
IP address of the remote security appliance peer
•
IP addresses of local hosts and networks permitted to use the tunnel to
•
communicate with resources on the remote site
IP addresses of remote hosts and networks permitted to use the tunnel to
•
communicate with local resources
Chapter 4
Outside
Internet
209.165.200.236
Scenario: Site-to-Site VPN Configuration
Security
Appliance 2
Inside
10.20.20.0
Figure 4-1
requires you
Site B
78-17645-01