VPN
Configuring the Cisco IPSec VPN Client
STEP 1
STEP 2
Cisco ISA500 Series Integrated Security Appliance Administrator Guide
NAT or PAT translation over the VPN tunnel. When accessing the remote network
192.168.100.x, the hosts 10.0.0.3 and 10.0.04 will not be translated, and hosts in
the remote network 192.168.100.x can access the hosts 10.0.0.3 and 10.0.04
directly.
The client hosts are given IP addresses that are fully routable by the destination
network over the tunnel. These IP addresses could be either in the same subnet
space as the destination network or in separate subnets, assuming that the
destination routers are configured to properly route those IP addresses over the
tunnel.
Figure 9 Cisco IPSec VPN Network Extension Connection
10.0.0.3
202.0.0.1
as a Cisco IPSec VPN Client
10.0.0.4
General Settings
You can enable the Cisco IPSec VPN Client feature, configure the Auto Initiation
Retry settings, or manually connect or disconnect the IPSec VPN tunnels.
Click VPN -> Remote User Access -> Cisco IPSec VPN Client.
The Cisco IPSec VPN Client window opens.
Enter the following information:
•
Cisco IPSec VPN Client Enable: Click On to enable the Cisco IPSec VPN
Client feature and set the security appliance as a Cisco VPN hardware client,
or click Off to disable it.
WAN
Internet
ISA500
192.168.100.x
WAN
203.0.0.1
VPN tunnel
Cisco Device
as a Cisco IPSec VPN Server
8
242