Skip to main content

SonicWALL בין שתי יחידות Site to Site VPN הגדרת

TZ170 Enhanced Configuration:

First add Address Object to define remote network.

Make sure that the zone type is VPN, and that you add a network type object.

 

Go to Settings menu at VPN option add VPN new policy.

 

General:

Use IKE IPSec with Preshared Secret.

IPSec Primary Gateway is the remote real IP.

Type a Shared Secret.

 

 

 

Network:

For Local Network choose Lan Primary Subnet

For Remote Network choose the Address Object you just created.

 

 

 

Proposals:

Leave Default Settings accept Exchange – Change it to Main Mode

 

 

 

Advanced:

Check Enable Keep Alive

Check Enable Windows Networking

VPN Policy Bound to: choose the interface for VPN use

 

 

 

TZ170 Standard Configuration:

Go to Settings menu at VPN option add VPN new policy.

 

General:

Use IKE IPSec with Preshared Secret.

IPSec Primary Gateway is the remote real IP.

Type the same Shared Secret that you typed in the TZ170 Enhanced

At Destination Networks choose Specify Destination and add the remote network ID and mask.

 

 

 

Proposals:

Leave Default Settings accept Exchange – Change it to Main Mode

 

 

 

Advanced:

Check Enable Keep Alive

Check Enable Windows Networking

Choose VPN terminate at: LAN/OPT

 

 

Try Ping remote computer than check the VPN Policy for Green Light and the Active VPN Tunnel.

 

 

Done!