[x]
Posted via EE Mobile

Search, ask, and monitor your questions on the go with EE Mobile. Visit Experts Exchange from your mobile device and never be out of touch again.

Question
[x]
Attachment Details
[x]
The Solution Rating System

With so many solutions, how can you tell which solutions are most likely to help you and which ones are not? To provide you with a tool to use, we rate our solutions based on various elements that most accurately determine if a solution is a quality solution. To explain what factors affect the solution rating, here are the elements we take into consideration when formulating our solution rating.

  • The Grade of the Solution
  • The Zone Rank of the Expert Providing the Solution
  • The Number of Author and Expert Comments
  • The Number of Experts Contributing
  • The Feedback of the Community

Your Input Matters
Because of the way the system is set up, the most important variable in this equation is you. As a member of Experts Exchange, you are able to cast your vote on the quality of the solutions in regard to how complete, accurate, helpful and easy to understand each solution is. When you provide your feedback, each rating is adjusted accordingly. So, if you see a solution that has a poor rating that you think is a good solution, let us know by rating it. As you do, the rating will be adjusted and will become more accurate for other members of our site.

If you have any suggestions that you would like to make for our rating system, please ask a question in the Suggestions Zone of Community Support.

Thank you!

8.2

Nortel C221 and C1100 VPN connection configuration

Asked by Trinidad-Ace in Network Routers, Virtual Private Networking (VPN)

Tags: Norter

I have been task with setting up a VPN connection between my main office and a remote site. The main purpose of the VPN is to set up a VoIP phone. We are using a BCM50e v3.0 from Nortel for our phone system and that is the system that will be assigning the number to the remote phone.

This is going to be a tryout so the equipment I will be implementing is temporary and they are as follow:

1.      Nortel Contivity 221 (remote router)
2.      Nortel Contivity 1100 (main office router)

I am new to the whole concept of routers and VPNs. The little I know is from killing my self by reading every possible guide for the two routers I mention above. I have an idea of how to configure them but I dont know where to start and how to wire the routers.

This is what I have done so far:
On the Nortel Contivity 1100

1.      Configured the Private LAN interface from the Console Port
2.      I gave the router a new management IP Address = 192.168.1.1
3.      When into the Interface Menu and set up the following IPs:
a.      Slot 0, Port 1, Private LAN = 192.168.1.2  255.255.0.0
b.      Slot 1, Port1,  Public LAN = empty
c.      Slot 3, Port 1, Public LAN = 206.193.x.x  255.255.255.248(ISP gateway IP) (not sure if that is was the right thing to do)
4.      Logged to the WebGUI
5.      I went under Profile à Branch Office and created a Branch Group under the /Base which I called Branch Group (I know very original)
6.      I then configure the following:
a.      Group Name: /Base/Branch Group
b.      Connection Name: To Remote Branch
c.      Control Tunnel: Disabled
d.      Tunnel Type: IPSec
e.      Connection Type: Responder
f.      Enable: checked
g.      Filter: permit all
h.      Authentication: Text Pre-Shared Key
i.      Initiator ID: bcm50test
j.      Text Pre-Shared Key: *********
k.      MTU: Enable
l.      MTU Value: 1788
m.      NAT: none
Here is where I am starting to pull my hair!!!!
IP Configuration
Is it going to be Static or Dynamic? I have it set up as static.
It is asking me for the Local Networks and Remote Networks.
What do I need to enter for my local network? Would that be my the IP range I want my remote branch to see?
What do I enter for my Remote Network? Considering the fact that the ISP provider for the remote branch is assigning IP through DHCP so I will not know it.
Will I need to enter 0.0.0.0

I am trying to set up an Asymmetric Branch Office Tunnel
So my remote site will be the Initiator(C221) and the main office will be the Responder(C1100)

The Contivity 221 is setup as follow:

1.      Connection Type: Branch Office
2.      Active is checked
3.      Name: ToMainOffice
4.      Key Management: IKE
5.      Negotiation Mode: Aggressive
IP Policy I have no idea what IP should use.

6.      Local ID Type: DNS
7.      Content: bcm50test
8.      My IP Address: 0.0.0.0 (ISP DHCP)
9.      Peer ID Type: IP
10.      Content: empty
11.      Secure Gateway Address: I used the main office IP gateway given to me by my ISP. Not sure if is right!!
12.      Encapsulation Mode: Tunnel

Can someone tell me how to configure the right way I am very sure that I am messing up somewhere.

 
Related Solutions
Keywords: Nortel C221 and C1100 VPN conn…
 
Loading Advertisement...
 
[+][-]03/20/09 12:10 PM, ID: 23942793Accepted Solution

View this solution now by starting your 30-day free trial. Setting up your free trial is quick, easy, and secure. We will return you to this solution, unlocked, when you're done.

About this solution

Zones: Network Routers, Virtual Private Networking (VPN)
Tags: Norter
Sign Up Now!
Solution Provided By: Trinidad-Ace
Participating Experts: 1
Solution Grade: A
 
[+][-]03/07/09 09:13 AM, ID: 23825603Expert Comment

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 30-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]03/07/09 02:49 PM, ID: 23827026Author Comment

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 30-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]03/08/09 12:07 PM, ID: 23830773Expert Comment

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 30-day free trial to view this Expert Comment or ask the Experts your question.

 
 
Loading Advertisement...
20091111-EE-VQP-92 - Hierarchy / EE_QW_3_20080625