How To Establish IPSec VPN Tunnel between Cyberoam and Cisco ASA using Preshared key

Similar documents
How To Establish IPSec VPN between Cyberoam and Microsoft Azure

How To Establish IPSec VPN connection between Cyberoam and Mikrotik router

How To Establish Site-to-Site VPN Connection. using Preshared Key. Applicable Version: onwards. Overview. Scenario. Site A Configuration

Configuring IPsec VPN with a FortiGate and a Cisco ASA

Configuration Guide. How to set up the IPSec site-to-site Tunnel between the D-Link DSR Router and the Sonicwall Firewall.

Configuration Guide. How to set up the IPSec site-to-site Tunnel between the D-Link DSR Router and the Fortinet Firewall. Overview

VPN Configuration of ProSafe Client and Netgear ProSafe Router:

IPsec VPN Application Guide REV:

VPN L2TP Application. Installation Guide

Configuring IPsec between a Microsoft Windows XP Professional (1 NIC) and the VPN router

Configuration Guide. How to set up the IPSec site-to-site Tunnel between the D-Link DSR Router and the Cisco Firewall. Overview

Workflow Guide. Establish Site-to-Site VPN Connection using RSA Keys. For Customers with Sophos Firewall Document Date: November 2015

How To Configure L2TP VPN Connection for MAC OS X client

DI-804HV with Windows 2000/XP IPsec VPN Client Configuration Guide

ZyWALL USG-Series. How to setup a Site-to-site VPN connection between two ZyWALL USG series.

How To Setup Cyberoam VPN Client to connect a Cyberoam for remote access using preshared key

Workflow Guide. Establish Site-to-Site VPN Connection using Digital Certificates. For Customers with Sophos Firewall Document Date: November 2015

RouteFinder. IPSec VPN Client. Setup Examples. Reference Guide. Internet Security Appliance

Katana Client to Linksys VPN Gateway

How To - Setup Cyberoam VPN Client to connect to a Cyberoam for the remote access using preshared key

How To Configure Syslog over VPN

How to access peers with different VPN through IPSec. Tunnel

How To Configure Apple ipad for Cyberoam L2TP

Internet. SonicWALL IP SEV IP IP IP Network Mask

Establishing a VPN tunnel to CNet CWR-854 VPN router using WinXP IPSec client

Scenario: Remote-Access VPN Configuration

Netgear ProSafe VPN firewall (FVS318 or FVM318) to Cisco PIX firewall

How To Set Up A Vpn Tunnel Between Winxp And Zwall On A Pc 2 And Winxp On A Windows Xp 2 On A Microsoft Gbk2 (Windows) On A Macbook 2 (Windows 2) On An Ip

Deploying the Barracuda Link Balancer with Cisco ASA VPN Tunnels

CREATING AN IKE IPSEC TUNNEL BETWEEN AN INTERNET SECURITY ROUTER AND A WINDOWS 2000/XP PC

Configure VPN between ProSafe VPN Client Software and FVG318

UTM - VPN: Configuring a Site to Site VPN Policy using Main Mode (Static IP address on both sites) i...

Configuring TheGreenBow VPN Client with a TP-LINK VPN Router

VNS3 to Cisco ASA Instructions. ASDM 9.2 IPsec Configuration Guide

Configuring a Site-to-Site VPN Tunnel Between Cisco RV320 Gigabit Dual WAN VPN Router and Cisco (1900/2900/3900) Series Integrated Services Router

VPN Configuration of ProSafe VPN Lite software and NETGEAR ProSafe Router:

Balancing and Gateway Failover

ISG50 Application Note Version 1.0 June, 2011

Application Notes. How to Configure UTM with Apple OSX and ios Devices for IPsec VPN

Using IPsec VPN to provide communication between offices

Configuring an IPsec VPN to provide ios devices with secure, remote access to the network

Windows XP VPN Client Example

Configuring a Check Point FireWall-1 to SOHO IPSec Tunnel

Configuring IPsec VPN between a FortiGate and Microsoft Azure

DFL-210/260, DFL-800/860, DFL-1600/2500 How to setup IPSec VPN connection

Creating a Gateway to Client VPN between Sidewinder G2 and a Mac OS X Client

How To Industrial Networking

Lab 4.4.8a Configure a Cisco GRE over IPSec Tunnel using SDM

Configure an IPSec Tunnel between a Firebox Vclass & a Check Point FireWall-1

Network/VPN Overlap How-To with SonicOS 2.0 Enhanced Updated 9/26/03 SonicWALL,Inc.

Configuring Windows 2000/XP IPsec for Site-to-Site VPN

Scenario: IPsec Remote-Access VPN Configuration

OvisLink 8000VPN VPN Guide WL/IP-8000VPN. Version 0.6

VPN Consortium Scenario 1: Gateway-to-Gateway with Preshared Secrets

7. Configuring IPSec VPNs

VPN Consortium Scenario 1: Gateway-to-Gateway with Preshared Secrets

How To Configure An Ipsec Tunnel On A Network With A Network Gateways (Dfl-800) On A Pnet 2.5V2.5 (Dlf-600) On An Ipse Vpn

Configuring an IPSec Tunnel between a Firebox & a Check Point FireWall-1

How To Load balance traffic of Mail server hosted in the Internal network and redirect traffic over preferred Interface

Netopia TheGreenBow IPSec VPN Client. Configuration Guide.

I. What is VPN? II. Types of VPN connection. There are two types of VPN connection:

RF550VPN and RF560VPN

How To Configure SSL VPN in Cyberoam

Configuring SSH Sentinel VPN client and D-Link DFL-500 Firewall

VPN Configuration Guide. Cisco Small Business (Linksys) WRVS4400N / RVS4000

Fireware How To VPN. Introduction. Is there anything I need to know before I start? Configuring a BOVPN Gateway

VPN Wizard Default Settings and General Information

VPN Tracker for Mac OS X

VPN PPTP Application. Installation Guide

Configuring a VPN for Dynamic IP Address Connections

Global VPN Client Getting Started Guide

Create a VPN on your ipad, iphone or ipod Touch and SonicWALL NSA UTM firewall - Part 1: SonicWALL NSA Appliance

VPN Configuration Guide. Cisco Small Business (Linksys) WRV210

Vodafone MachineLink 3G. IPSec VPN Configuration Guide

TechNote. Configuring SonicOS for MS Windows Azure

Setting up VPN Tracker with Nortel VPN Routers

Chapter 4 Virtual Private Networking

Configure IPSec VPN Tunnels With the Wizard

Configuration Guide. How to establish IPsec VPN Tunnel between D-Link DSR Router and iphone ios. Overview

Using IKEv2 on Juniper Networks Junos Pulse Secure Access Appliance

Global VPN Client Getting Started Guide

Configuring IPSec VPN Tunnel between NetScreen Remote Client and RN300

Viewing VPN Status, page 335. Configuring a Site-to-Site VPN, page 340. Configuring IPsec Remote Access, page 355

VPN. VPN For BIPAC 741/743GE

REMOTE ACCESS VPN NETWORK DIAGRAM

Scenario 1: One-pair VPN Trunk

Enable VPN PPTP Server Function

How to Setup PPTP VPN Between a Windows PPTP Client and the DIR-130.

VPN Tracker for Mac OS X

Cyberoam Configuration Guide for VPNC Interoperability Testing using DES Encryption Algorithm

Interoperability Guide

Configuring the PIX Firewall with PDM

Defender EAP Agent Installation and Configuration Guide

What information will you find in this document?

Global VPN Client Getting Started Guide

How do I set up a branch office VPN tunnel with the Management Server?

How To Configure Virtual Host with Load Balancing and Health Checking

Gateway to Gateway VPN Connection

Configuring a Lan-to-Lan VPN with SSG5 and Check Point Appliance Safe@Office 500

IPSec Pass through via Gateway to Gateway VPN Connection

Transcription:

How To Establish IPSec VPN Tunnel between Cyberoam and Cisco ASA using Preshared key How To Establish IPSec VPN Tunnel Between Cyberoam and Cisco ASA using Preshared Key Product: The information in this article is based on Cyberoam Version 10.00 onwards and Cisco ASA. Applicable to Version: 10.00 onwards This article describes a detailed configuration example that demonstrates how to set up a Site-to-Site IPSec VPN connection between Cyberoam and Cisco ASA using preshared key to authenticate VPN peers. Throughout the article we will use the default VPN policy provided by Cyberoam and network parameters as shown in the diagram below. This document has 2 sections: Cisco ASA Configuration Cyberoam Configuration

Cisco ASA Configuration The entire configuration is to be done from Web Admin Console. Access Web Admin Console with user having Administrator profile. Step 1: Configuration Wizard Go to Configuration VPN VPN Wizard to configure Site-to-Site VPN Tunnels and then click on Launch VPN Wizard. Step 2: Configure VPN Tunnel Type Follow the On-Screen steps after clicking on Launch VPN Wizard. Select the VPN Tunnel Type as Site-to- Site and VPN Tunnel Interface as outside and click Next.

Step 3: Configuring Remote Site Peer Parameters Create a Remote Site Peer configuration as shown below and then Click Next. Parameters Value Peer IP Address 202.134.168.202 WAN IP/Public IP address of the Cyberoam Authentication Method Pre-shared Key Pre-shared Key 0123456789 Tunnel Group Name (As per your requirement. Same as configured in the Cyberoam) CR_2_ASA

Step 4: Configuring IKE Policy Parameters Configure Internet Key Exchange (IKE) Parameters and then Click Next. Parameters Encryption Authentication Diffie-Hellman Group Value 3DES MD5 2

Step 5: Creating IPSec Rule Select the encryption and authentication algorithms and configure Perfect Forwarding Secrecy (PFS) for this IPSec VPN Tunnel and then Click Next. Parameters Encryption Authentication Perfect Forwarding Secrecy (PFS) Diffie-Hellman Group Value 3DES MD5 Enable 2

Step 6: Configuring IPSec Parameters Create/Identify hosts and networks to be used in the IPSec Tunnel. Parameters Value Source Settings Type IP Address IP Address 172.50.50.0 LAN of Cisco ASA Netmask 255.255.255.0 Destination Settings Type IP Address IP Address 172.16.16.0 LAN of Cyberoam Netmask 255.255.255.0

Click and a screen will appear as shown in the below screenshot. Then Click on Add button to Add a new Network Object. Create Network Object for Cisco ASA Parameters Value Name CiscoASA_LAN IP Address 172.50.50.0 Netmask 255.255.255.0

Create Network Object for Cyberoam Parameters Value Name CR_LAN IP Address 172.16.16.0 Netmask 255.255.255.0

Select the Network Object for Source and Destination and Click OK. It will be placed in the appropriate field and Then Click Next. Step 6: Summary of VPN Tunnel Created A Site-to-Site VPN Tunnel will be created with the attributes as shown in the below screen:

Click Finish and the VPN Tunnel will be created successfully.

Cyberoam Configuration The entire configuration is to be done from Web Admin Console. Access Web Admin Console with user having Administrator profile. Step 1: Create IPSec connection Go to VPN IPSec Connection and click on Add button to create Connection with the following values: Parameters General Settings Name Connection Type Policy Action on VPN Restart Value CR_2_ASA Site to Site DefaultHeadOffice Respond Only Authentication Details Authentication Type Preshared Key Confirm Preshared Key Preshared Key Specify the preshared key to be used. Forward this key to the remote peer (SonicWall) as same preshared key should be used by both the peers. At the remote end, client will have to specify this key for authentication. In SonicWall, preshared key is called Shared Secret or Preshared Secret. Specify preshared key again for confirmation Local Network Details

202.134.168.202 Local WAN Port Select WAN port which acts as end-point to the tunnel 172.16.16.0/24 Local Subnet Select Local LAN Address. Remote Network Details Remote VPN Sever 202.134.168.208 Remote Subnet 172.50.50.0/24 Click on OK and the IPSec Connection CR_2_ASA will be added successfully.

Step 2: Activate Connection Go to VPN IPSec Connection and click under Status against the CR_2_ASA connection to activate the connection. under Status indicates that the connection is successfully activated. Note At a time only one connection can be active if both the types of connection - Digital Certificate and Preshared Key - are created with the same source and destination. In such situation, at the time of activation, you will receive error Unable to activate connection hence you need to deactivate all other connections. Document Version 1.0 30/06/2011 The Corporate and individual names, data and other configuration & network parameters images in this document are for demonstration purposes only and does not reflect the real data.