VMware VSHIELD MANAGER 4.1.0 UPDATE 1 - API Manual de usuario Pagina 53

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 162
  • Tabla de contenidos
  • SOLUCIÓN DE PROBLEMAS
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 52
VMware, Inc. 53
Chapter 10 vShield Edge Management
5UnderStaticBindings,clickAddBindings.
Anewrowappearsinthetable.
6Doubleclickeachcellintherowtoenterorselecttheappropriateinformation.
ThePrimaryNameServerandSecondaryNameServ erfieldsrefertoDNSservice.YoumustentertheIP
addressofaDNSserverfor
hostnametoIPaddressresolution.
7ClickCommittosavetherule.
8IfDHCPservicehasnotbeenenabled,enableDHCPservice.
See“StartorStopvShieldEdgeServices”onpage 56.
Manage VPN Service
vShieldEdgemodulessupportsitetositeIPSecVPNbetweenavShieldEdgeandremotesites.
Figure 10-1. vShield Edge Providing VPN Access from a Remote Site to a Secured Port Group
Atthistime,vShieldEdgesupportspresharedkeymode,IPunicasttraffic,andnodynamicroutingprotocol
betweenthevShieldEdgeandremoteVPNrouters.BehindeachremoteVPNrouter,youcanconfigure
multiplesubnetstoconnecttotheinternalnetworkbehindavShieldEdgethroughIPSectunnels.These
subnetsandtheinternalnetworkbehindavShieldEdgemusthavenonoverlappingaddressranges.
YoucandeployavShieldEdgeagentbehindaNATdevice.Inthisdeployment,theNATdevicetranslatesthe
VPN
addressofavShieldEdgeintoapubliclyaccessibleaddressfacingtheInternet.RemoteVPNroutersuse
thispublicaddresstoaccessthevShieldEdge.
RemoteVPNrouterscanbelocatedbehindaNATdeviceaswell.YoumustprovideboththeVPNnative
addressandtheNATpublicaddress
tosetupthetunnel.
Onbothends,staticonetooneNATisrequiredfortheVPNaddress.
Vista de pagina 52
1 2 ... 48 49 50 51 52 53 54 55 56 57 58 ... 161 162

Comentarios a estos manuales

Sin comentarios