
Tech Tip
Contivity Secure IP Services Gateway
Contivity – BCM IPSec Peer-to-Peer Tunnel Using Pre-Shared Key
Authentication
Sample Configuration
Setup
Branch Office Tunnel
WS1
WS2
192.168.10.0/24
10.1.1.0/24
30.1.1.0/24
CES
BCM
WS1 – Windows 2000 workstation, IP 192.168.10.11/24;
WS2 - Windows 2000 workstation, IP 10.1.1.10/24;
CES – Contivity Secure IP Services Gateway, code version V04_85, management IP
192.168.10.1/24, private IP 192.168.10.2/24, public IP 30.1.1.2/24
BCM – Business Communication Manager, Private IP (LAN 1) 10.1.1.1/24, public IP (LAN 2)
30.1.1.1/24.
The goal of the configuration is to set up an IPSec peer-to-peer branch office tunnel between a
CES and a BCM using 3DES with MD5 integrity and a pre-shared key authentication.
Configuring WS1
Configure the IP address (192.168.10.11/24) on the WS1 and the CES private interface
(192.168.10.2) as the default gateway:
C:\>ipconfig
Windows IP Configuration
Ethernet adapter Local Area Connection 2:
Connection-specific DNS Suffix . :
IP Address. . . . . . . . . . . . : 192.168.10.11
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.10.2
TT040922 1.00 September 2004 Page: 2 of 27
Comentarios a estos manuales