Ruijie Community

Title: How to configure site to site IPSec VPN on Ruijie Cloud? [Print this page]

Author: zhangqiao@ruiji    Time: 2024-4-19 11:11
Title: How to configure site to site IPSec VPN on Ruijie Cloud?
Application Scenario
Virtual private network (VPN) is used to build a virtual private network on the public network, and transmit private network traffic on this virtual network. In this scenario, the networks of the HQ and branch are connected to the Internet through fixed gateways, and the networking is relatively fixed. The access is bidirectional, that is, both the branch and HQ may initiate access to the peer end. It is often used for business communication of chain supermarkets, government departments, and banks.
Network Topology

Configuration
1. Configuring the IPsec Server
Choose One-Device > Gateway > Config > VPN > IPsec > IPsec Security Policy.
1.1 Basic Settings
Click Add. In the dialog box that appears, set Policy Type to Server, enter the policy name and local subnet range, set the pre-shared key, and click OK.



1.2. Advanced Settings (Phase 1)
The key exchange version in the basic setting is IKEv1:
Click 1. Set IKE Policy to expand the configuration items. Keep the default settings unless otherwise specified

The key exchange version in the basic setting is IKEv2:
Click IKE Policy to expand the configuration items. Keep the default settings unless otherwise specified.


1.3 Advanced Settings (Phase 2)
Click Connection Policy to expand the configuration items. Keep the default settings unless otherwise specified.


2. Configuring the IPsec Client
Choose One-Device > Gateway > Config > VPN> IPsec > IPsec Security Policy.
2.1 Basic Settings
Click Add. In the dialog box that appears, set Policy Type to Server, enter the policy name and local subnet range, set the pre-shared key, and click OK.




2.2 Advanced Settings (Phase 1)
The key exchange version in the basic setting is IKEv1:
Click 1. Set IKE Policy to expand the configuration items. Keep the default settings unless otherwise specified

The key exchange version in the basic setting is IKEv2:
Click IKE Policy to expand the configuration items.Keep the default settings unless otherwise specified



2.3. AdvancedSettings (Phase 2)
Click Connection Policy to expand the configuration items. Keep the default settings unless otherwise specified


3. Viewing the IPsec Connection Status
Choose One-Device > Gateway > Config > VPN> IPsec > IPsec Connection Status
You can view the IPsec tunnel connection status on the current page.








Welcome to Ruijie Community (https://community.ruijienetworks.com/) Powered by Discuz! X3.2