Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Firewalls
[Top] [All Lists]

RE: Netscreen VPN route to VPN

Subject: RE: Netscreen VPN route to VPN
Date: Thu, 1 Sep 2005 08:56:17 +1000
Hi Mark,

What you need to do in effect, is setup a hub and spoke VPN. This will
allow your remove users to VPN into Office A, and tunnel back out to
Office B.

Here is a knowledgebase article pertaining to setting up Hub and Spoke
VPNs for 3 sites. The site configuration and the remote user VPN
configuration is not all that different.

http://2550.support.juniper.safeharbor.com/knowbase/root/public/ns10205.
htm?

If you are using a newer version of ScreenOS, you should be able to jump
onto the Juniper site and download the Configuration and Examples guide
and do a lookup on Hub and Spoke VPNs.

Good luck.

Regards,

Jason

-----Original Message-----
From: Mark Owen [mailto:mr.markowen@gmail.com] 
Sent: Wednesday, 31 August 2005 2:20 PM
To: firewalls@securityfocus.com
Subject: Netscreen VPN route to VPN

Can't quite figure this one out and searching online brings no results.
Using a Netscreen trying to get our VPN users to connect to another VPN
tunnel.

Our site consist of "Office A", "Office B", and Dial-up users.
A and B are connected with a static VPN tunnel. 
Dial-up users connect to Office A through another VPN tunnel.
One Netscreen 25 handles both tunnels.

Typically all VPN users should only access A, but with recent expansions
B has started to become a file repository requiring remote access to our
dial-up users.
What I want to do is allow dial-up users who VPN to Office A to access
Office B.  I believe it is as simple as creating a route between the two
using Offica A as a gateway but the Netscreen interface isn't very clear
on where I should add it.

Any one have any thoughts?

Thanks,
Mark Owen


<Prev in Thread] Current Thread [Next in Thread>