Avatar of Gotham
Gotham
Flag for India asked on

ipsec vpn for broadband internet connection with static IPs

Dear Experts

We have 03 locations  one head office + 2 branch offices, application server  web based is hosted in head office and branch offices to access the head office applications, all the 03 locations are having broad brand internet connection and each of the location having static ip, is it possible to setup IP-sec VPN so that branch office users can access the application server of the head office,  if possible please suggest what type of router to be procured and steps please
Hardware FirewallsRoutersNetwork SecurityVPNNetwork Architecture

Avatar of undefined
Last Comment
John

8/22/2022 - Mon
ASKER CERTIFIED SOLUTION
masnrock

THIS SOLUTION ONLY AVAILABLE TO MEMBERS.
View this solution by signing up for a free trial.
Members can start a 7-Day free trial and enjoy unlimited access to the platform.
See Pricing Options
Start Free Trial
GET A PERSONALIZED SOLUTION
Ask your own question & get feedback from real experts
Find out why thousands trust the EE community with their toughest problems.
John

I agree with the above. We use Juniper VPN boxes at clients and you can connect site-to-site tunnels using these boxes from remote site to head office site. Some Cisco boxes are a bit easier to use.

But it can be done and as suggested above, please let us know your requirements.
Gotham

ASKER
thanks for masnrock and john, so whatever the connection type could be like the following but with static IP  the IP Sec- VPN can be configured is this correct please suggest
1. Head office leased line circuit and both branch office DSL/Broad Band connection
2. head office and as well the branch offices all are in DSL/Broad Band connection
masnrock

The answers would stay the same based on the information you're providing. The biggest key is ensuring that your routers w/ site to site VPN are internet facing. So if your modems are also routers, they need to be in bridge mode.
Experts Exchange is like having an extremely knowledgeable team sitting and waiting for your call. Couldn't do my job half as well as I do without it!
James Murphy
John

The connections you state are fine, so you need just to select the VPN boxes and set up.

The VPN box needs the external Static IP and that is the Bridge Mode suggested above
SOLUTION
masnrock

THIS SOLUTION ONLY AVAILABLE TO MEMBERS.
View this solution by signing up for a free trial.
Members can start a 7-Day free trial and enjoy unlimited access to the platform.
See Pricing Options
Start Free Trial
GET A PERSONALIZED SOLUTION
Ask your own question & get feedback from real experts
Find out why thousands trust the EE community with their toughest problems.
Gotham

ASKER
thank you very much, can you please suggest VPN box,  the  company and model name to procure.
John

Cisco RVxx
Juniper SSG or equivalent
Sonic Wall

The models are constantly changing
⚡ FREE TRIAL OFFER
Try out a week of full access for free.
Find out why thousands trust the EE community with their toughest problems.