VMware VSHIELD MANAGER 4.1.0 UPDATE 1 - API Manuel d'utilisateur Page 53

  • Télécharger
  • Ajouter à mon manuel
  • Imprimer
  • Page
    / 162
  • Table des matières
  • DEPANNAGE
  • MARQUE LIVRES
  • Noté. / 5. Basé sur avis des utilisateurs
Vue de la page 52
VMware, Inc. 53
Chapter 10 vShield Edge Management
5UnderStaticBindings,clickAddBindings.
Anewrowappearsinthetable.
6Doubleclickeachcellintherowtoenterorselecttheappropriateinformation.
ThePrimaryNameServerandSecondaryNameServ erfieldsrefertoDNSservice.YoumustentertheIP
addressofaDNSserverfor
hostnametoIPaddressresolution.
7ClickCommittosavetherule.
8IfDHCPservicehasnotbeenenabled,enableDHCPservice.
See“StartorStopvShieldEdgeServices”onpage 56.
Manage VPN Service
vShieldEdgemodulessupportsitetositeIPSecVPNbetweenavShieldEdgeandremotesites.
Figure 10-1. vShield Edge Providing VPN Access from a Remote Site to a Secured Port Group
Atthistime,vShieldEdgesupportspresharedkeymode,IPunicasttraffic,andnodynamicroutingprotocol
betweenthevShieldEdgeandremoteVPNrouters.BehindeachremoteVPNrouter,youcanconfigure
multiplesubnetstoconnecttotheinternalnetworkbehindavShieldEdgethroughIPSectunnels.These
subnetsandtheinternalnetworkbehindavShieldEdgemusthavenonoverlappingaddressranges.
YoucandeployavShieldEdgeagentbehindaNATdevice.Inthisdeployment,theNATdevicetranslatesthe
VPN
addressofavShieldEdgeintoapubliclyaccessibleaddressfacingtheInternet.RemoteVPNroutersuse
thispublicaddresstoaccessthevShieldEdge.
RemoteVPNrouterscanbelocatedbehindaNATdeviceaswell.YoumustprovideboththeVPNnative
addressandtheNATpublicaddress
tosetupthetunnel.
Onbothends,staticonetooneNATisrequiredfortheVPNaddress.
Vue de la page 52
1 2 ... 48 49 50 51 52 53 54 55 56 57 58 ... 161 162

Commentaires sur ces manuels

Pas de commentaire