Changes

Better images
Line 27: Line 27:  
----First of all, lets configure the VPN IPsec instance from RUTX11's side:
 
----First of all, lets configure the VPN IPsec instance from RUTX11's side:
 
*Login to the router's WebUI and go to '''Services → VPN → IPsec'''. Enter a custom name (for this example we use ''test'') for the IPsec instance click the "Add" button:
 
*Login to the router's WebUI and go to '''Services → VPN → IPsec'''. Enter a custom name (for this example we use ''test'') for the IPsec instance click the "Add" button:
[[File:IPsec RUTOS RUTX11 Instance.png|alt=|993x993px|border|class=tlt-border]]
+
[[File:IPsec RUT955 instance2.png|alt=|border|992x992px]]
 
----
 
----
 
*Click the "Edit" button located next to the newly created instance and set up the configuration according to the network:
 
*Click the "Edit" button located next to the newly created instance and set up the configuration according to the network:
[[File:Wiki3.png|alt=|center|930x930px|border|class=tlt-border]]
+
[[File:IPsec RUT955 config 2.png|alt=|border|center|930x930px]]
 
*Below are explanations of the parameters highlighted in the figure above. Other parameters (not highlighted) are defaults. You can find descriptions for these parameters in the '''[[VPN#IPsec|VPN manual page, IPsec section]]'''
 
*Below are explanations of the parameters highlighted in the figure above. Other parameters (not highlighted) are defaults. You can find descriptions for these parameters in the '''[[VPN#IPsec|VPN manual page, IPsec section]]'''
 
**'''Enable''' - enables the IPsec instance
 
**'''Enable''' - enables the IPsec instance
Line 44: Line 44:     
*IKE lifetime must be added and can be any desired value.
 
*IKE lifetime must be added and can be any desired value.
[[File:IPsec RUTX11 Phase 1.png|center|714x714px|class=tlt-border|alt=]]
+
[[File:IPsec RUT955 phase 12.png|alt=|center|714x714px]]
 
   
* Phase 1 & Phase 2 details should be the same with that of the RUT955 P1 & P2 details or else the tunnel will not be properly established.
 
* Phase 1 & Phase 2 details should be the same with that of the RUT955 P1 & P2 details or else the tunnel will not be properly established.
[[File:IPsec RUTX11 Phase 2.png|center|719x719px|border|class=tlt-border|alt=]]
+
[[File:IPsec RUTX11 Phase 22.png|alt=|border|center|719x719px]]
    
===RUT955===
 
===RUT955===
 
----Similarly, the configuration for the VPN IPsec instance from RUT955's side is as follows:
 
----Similarly, the configuration for the VPN IPsec instance from RUT955's side is as follows:
   −
[[File:IPsec RUT955 instance.png|alt=|993x993px|border|class=tlt-border]]
+
[[File:IPsec RUT955 instance2.png|alt=|border|992x992px]]
    
*In this case, Remote endpoint should be RUTX11's Public IP:
 
*In this case, Remote endpoint should be RUTX11's Public IP:
 
+
[[File:IPsec RUTX11 Config2.png|alt=|center|762x762px]]
[[File:IPsec RUT955 config.png|center|762x762px|class=tlt-border|alt=]]
   
----
 
----
 
* The last step in configuring the IPsec instances is '''Phase settings'''. Make sure they match with the Phase settings (both Phase 1 and Phase 2) of the RUTX11's connection:
 
* The last step in configuring the IPsec instances is '''Phase settings'''. Make sure they match with the Phase settings (both Phase 1 and Phase 2) of the RUTX11's connection:
[[File:IPsec RUT955 phase 1.png|alt=|center|789x789px|border|class=tlt-border]]
+
[[File:IPsec RUT955 phase 12.png|alt=|border|center|789x789px]]
[[File:IPsec RUT955 phase 2.png|center|734x734px|border|class=tlt-border|alt=]]
+
[[File:IPsec RUTX11 Phase 22.png|alt=|border|center|734x734px]]
      Line 69: Line 67:  
[[File:IPsec RUTX11 result 2.png|alt=|border|902x902px]]
 
[[File:IPsec RUTX11 result 2.png|alt=|border|902x902px]]
 
[[File:IPsec RUT955 result 2.png|alt=|left|903x903px]]
 
[[File:IPsec RUT955 result 2.png|alt=|left|903x903px]]
 +
 +
 +