Networking Environment
As shown in Figure 7-7, an enterprise's network connects to the Internet using a Router that
functions as an SSL VPN gateway. The marketing personnel on external networks access the
enterprise's intranet through the Router.
The marketing personnel have the following access requirements:
l Access the internal Web server and mail server, share desktop with the internal host
10.138.10.21, and ping the internal hosts 10.138.10.64-10.138.10.95.
Configure the Router to meet the access requirements of marketing personnel.
Figure 7-7 SSL VPN gateway network
Internet
LAN
Marketing
personnel
Web server
Mail server
Intranet
Router
Desktop
sharing host
Eth2/0/0 Vlanif 10
Configuration Roadmap
The configuration roadmap is as follows:
l Create a virtual gateway on the Router for marketing personnel and configure resources to
meet the access requirements of marketing personnel.
Data Preparation
To complete the configuration, you need the following data:
l Data on the intranet
Resource Type
IP Address Port Number
Web server 10.138.10.1 80
Mail server 10.138.10.3 995
Host for desktop sharing 10.138.10.21 3389
Remote host 10.138.10.32-10.138.10.192 -
l Data on virtual gateways
Huawei AR1200 Series Enterprise Routers
Configuration Guide - VPN 7 SSL VPN Configuration
Issue 01 (2012-04-20) Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
378