Chapter 6. Virtual Private Networks
61
This guide details a sample configuration involving a workstation client that wishes to connect se
curely to a remote LAN with a CIPE gateway. The workstation uses a dynamic IP address via cable
modem connection, while the CIPE enabled gateway machine employs the 192.168.1.0/24 range. This
is what is known as a "typical" CIPE configuration. The following diagram illustrates the network ar
chitecture for this CIPE configuration:
Figure 6 2. Typical CIPE Server and Client Configuration
Installing CIPE between the client and the CIPE server will allow for a secured peer to peer con
nection using the Internet as a medium for transmission of WAN traffic. The client workstation will
then transfer a file through the Internet to the CIPE enabled firewall, where each packet will be times
tamped, encrypted, and given the peer address of the receiving CIPE enabled firewall. The destination
firewall then reads the header information, strips it, and sends it through to the remote LAN router
to be then routed to its destination node. This process is seamless and completely transparent to end
users. The majority of the transaction is done between the CIPE enabled peers.
6.2.3. CIPE Server Configuration
To setup the CIPE server, simply install the RPM package from the Red Hat Linux disc or via Red
Hat Network.
Important
If you are using an older version of Red Hat Linux and/or have an older version of CIPE, you should
upgrade to the latest version.
The next step is to copy the sample configuration files from
/usr/share/doc/cipe
version/samples
(where version is the version of CIPE installed on your system) to
/etc/cipe/
. Once they are copied, you will need to edit the
/etc/cipe/options.cipcbx
(x is
incremental starting from 0, for those who wish to have more than one CIPE connection on the CIPE
server) file to include your LAN subnet addresses and publicly routable firewall IP addresses. The
following is the example
options
file included with the Red Hat Linux CIPE RPM which, for this
example, is renamed to
options.cibcb0
:
footer
Our partners:
PHP: Hypertext Preprocessor Best Web Hosting
Java Web Hosting
Inexpensive Web Hosting
Jsp Web Hosting
Cheapest Web Hosting
Jsp Hosting
Cheap Hosting
Visionwebhosting.net Business web hosting division of Web
Design Plus. All rights reserved