Cookbook Configuration
75
Prerequisite
Configure router A in the HQ as the IPsec server.
Configure router B in the branch as the IPsec client.
Keep consistent parameter settings at both ends:
○ Authentication mode: pre-shared key, with the key set to ruijie
○ IKE algorithm: 3DES-MD5 and DH2
○ IPsec negotiation scheme: ESP (3DES-MD5)
Configure NAT mapping on the outermost egress of the HQ and establish an IPsec connection on the LAN
router.
Procedure
(1) Ensure that basic configuration on the device and routers in both the HQ and branch are normal, and LANs
users at both ends can access the WAN.
(2) Configure router B in the branch.
a Choose Network > VPN and click Configure. Select Branch and click Next.