Avaya 3.7 User Manual

Page of 326
Exporting a VPN object to an extranet
Issue 4 May 2005
159
Figure 51: Exporting a VPN Object to an Extranet
VPN Object export checklist
 lists what to do before you export a VPN Object. The terms used by 
 are used 
for orientation.
IP Group Object
A
Domain
A
IP Group Object
B
VPN Object
A
Device Object
A
Extranet Device
IP Group Object
A
Domain
B
IP Group Object
B
VPN Object
A
Extranet Device
 Device OB
IP Group Object
A
 is 
configured with Device 
Object
A
, but Device 
Object
A
 does not get 
exported to Domain
B
.
Domain
A
 created the VPN Object that was 
exported to an extranet (Domain
B
). This 
method allows members of VPN Object
A
 and VPN 
Object
B
 to privately share network resources 
and communicate.
VPN Object
A
 is exported to Domain
B
.
VPN Object
A
 is built with IP GroupA and IP 
GroupB. IP Group
A
 is configured with IP 
address masks for terminal devices in 
Domain
A
, and IP GroupB is configured with 
IP address masks for terminal devices in 
Domain
B
.
IP Group Object
B
 is 
configured with an 
Extranet Device. The 
device is configured with 
the IP address of Device 
Object
B
.
Device Object
B
 is configured from 
Domain
B
.The Extranet Device and Device 
Object
B
 have the same IP addresses, 
therefore, traffic to Domain
A
 will 
automatically use Device Object
B
 for 
VPN services.
Table 9: VPN Object Export Checklist
Task
For certificate based IKE VPNs, administrators of Domain
A
 and 
Domain
B
 assure that all security gateways which are participating in the 
extranet connection are using the correct certificates (
).
Administrators of Domain
A
 and Domain
B
 agree that Administrator
A
 
create the VPN Object that is exported to Domain
B
.
1 of 2