Cookbook    Configuration 
59 
 
 
Prerequisites 
  Configure router A in the HQ as the IPsec server. 
  Configure router B in the branch as the IPsec client. 
  Keep consistent parameter settings at both ends: 
○  Authentication mode: pre-shared key, with the key set to ruijie 
○  IKE algorithm: 3DES-MD5, DH2 
○  IPsec negotiation scheme: ESP (3DES-MD5) 
Procedure 
(1)  Configure router B in the branch. 
Complete wizard-based setup to meet basic Internet access requirements of users in the HQ and branch. 
If the users can access the Internet, check whether the next-hop address is configured for the WAN interface.