Wireless Access

last person joined: yesterday 

Access network design for branch, remote, outdoor, and campus locations with HPE Aruba Networking access points and mobility controllers.
Expand all | Collapse all

VPN S2S Tunnel Question

This thread has been viewed 4 times
  • 1.  VPN S2S Tunnel Question

    Posted Mar 29, 2017 10:58 AM

    Hi together,

    i have to ask some details about this ASE

     

    ASE s2s Tunnel

     

    My Task is to configure a active (live) controller so i have to be sure what iam doing :-)

     

    We have a moving 7005 with dyn Internet IP and i want to connect that controller with VPN to our corporate.

     

    So the ASE is fine but i am not really happy about the explanation of src-net %dyn_src_network% %dyn_src_mask%
    dst-net %dyn_dst_network% %dyn_dst_mask%

     

    Also the guide didnt explain the meaning.

     

    So in my case for Example lets say i have a 192.168.0.0/24 on my moving controller. And f.e. on the static VPN "Hub" i have a 10.0.0.0/16 and one 172.16.0.0/24.

    Goal is reached when 10.0.0.0/16 and 172.16.0.0/24 can reach the 192.168.0.0/24 and vice versa.

     

    What do i need here as src and dst-net on the hub and on the moving.

     

    I only know the cisco method with ACLs and tunnel IFs so maybe thats the cause why i am a little bit confused :-)

     

    Thanks in advance for a explanation!



  • 2.  RE: VPN S2S Tunnel Question

    Posted Mar 30, 2017 02:59 AM

    Any suggestions?



  • 3.  RE: VPN S2S Tunnel Question
    Best Answer

    Posted Apr 06, 2017 04:22 AM

    Answer:

    src-net %dyn_src_network% %dyn_src_mask%
    dst-net %dyn_dst_network% %dyn_dst_mask%

     

    This is really the "ACL" which Network Adresses can use the tunnel to which destinations. Currently i don't know why you also can add a route ACL on top.