WatchGuard Technologies Firebox SOHO 6.1 ユーザーズマニュアル
User Guide
87
Frequently Asked Questions
Special Considerations
Consider the following before configuring your WatchGuard
SOHO 6 VPN network:
SOHO 6 VPN network:
• You can connect up to six SOHO 6 appliances together. To set
up more VPN tunnels, you need at least one WatchGuard
Firebox II/III configured with the WatchGuard VPN
Manager.
Firebox II/III configured with the WatchGuard VPN
Manager.
• Each appliance must be able to send messages to the other. If
either appliance has a dynamically assigned IP address (see
“Network addressing” on page 31 for an explanation of
dynamic IP addresses), that appliance cannot find its remote
counterpart.
“Network addressing” on page 31 for an explanation of
dynamic IP addresses), that appliance cannot find its remote
counterpart.
• Both appliances must use the same encryption method. The
two choices are DES or 3DES. When connecting two
Microsoft Windows NT
Microsoft Windows NT
®
networks, the two networks must
be in the same Microsoft Windows domain or be trusted
domains. This is a Microsoft Networking design
implementation and not a limitation of the SOHO 6.
domains. This is a Microsoft Networking design
implementation and not a limitation of the SOHO 6.
Frequently Asked Questions
Why do I need a static external address?
To create a VPN connection, one SOHO 6 must be able to find its
partner appliance. If the addresses are allowed to change, the
SOHO 6 will not find its remote computer.
partner appliance. If the addresses are allowed to change, the
SOHO 6 will not find its remote computer.
How do I get a static external IP address?
Contact your ISP. Many systems use dynamically assigned
addresses to simplify basic installations. Some providers also use
addresses to simplify basic installations. Some providers also use