3com 3C855 Softwarehandbuch

Seite von 4
 
2 IPSec 
2.1  From the LAN to the Internet 
In this case, the Gateway will be transparent to the VPN traffic. You need make no 
changes to the settings on your Gateway, provided you have not explicitly blocked the 
PC initiating the VPN connection from accessing any services on the Internet via the 
“PC Privileges” page in the GUI. 
3Com recommends that the PC initiating the VPN connection has no restrictions 
imposed on it. 
As the Gateway will appear transparent, you can set up your VPN client in the normal 
manner, as will be described in the user guide for your VPN client. 
Note that only one IPSec VPN connection can be supported by the Gateway at a time. 
2.2  From the Internet to the LAN 
At present, it is not possible to set up an IPSec VPN server on your LAN, and have 
users access it from the Internet. 
If this configuration is attempted with the “Virtual DMZ” feature of the Gateway, it 
may be noticed that the VPN client manages to negotiate a tunnel, but that no traffic 
can be passed. This is because the protocols used to negotiate the VPN tunnel are 
different to those used for data transmission. It is not currently possible to configure 
the Gateway to pass the secure traffic from the Internet to the LAN. 
3 PPTP 
3.1  From the LAN to the Internet 
In this case, the Gateway will be transparent to the VPN traffic. You need make no 
changes to the settings on your Gateway, provided you have not explicitly blocked the 
PC initiating the VPN connection from accessing any services on the Internet via the 
“PC Privileges” page in the GUI. 
3Com recommends that the PC initiating the VPN connection has no restrictions 
imposed on it. 
As the Gateway will appear transparent, you can set up your VPN client in the normal 
manner, as will be described in the user guide for your VPN client.