VPN with SonicWALL
- VPN site to site using SonicWALL Firewalls
Got Privacy? Get it with a Virtual Private Network that encrypt's your data while it is transversing over the world wide web.
Problem: Creating secure connection from main office to a branch office.
Technologies used:
SonicWALL TZ190 wireless device and SonicWALL TZ150
Managed Service Contract:
Senior Techinicain in Charge: Raymundo Manriquez
Downtime: None
Data Loss: None
Disaster Recovery Cost Labor: $
In this case, a company is branching out to another geographical location. The plan of action is to internetwork the two locations with a secure connection that will allow sensitive information to be transferred from site to site. This connection will also give the company the network scalability assurance of any future growth, a cost in saving from renting leased lines from the telephone company and centralized control of operations. The new location employees will be able to work non traditional business hours if needed even if the main offices are closed.
Senior Technician in charge
Ray Manriquez
ray@thevgroup.com
Employees in the Norco office need access to company shared files and resources from their main office in Glendale. The Norco office has a DSL connection, while the Glendale office has a static ip and is protected by a SonicWALL TZ150 appliance. Creating the necessary security environment to transfer data between the two offices will require the creation of a site to site virtual private network.
We decided to purchase the Glendale central office a SonicWALL TZ190 Wireless appliance and send the SonicWALL TZ150 appliance to the Norco office. With the capabilities the TZ190 offers, the implementation and management of remote sites which require secure access to Glendale servers, are easily achievable for any future company expansions.
Settings from the TZ150 Standard firmware were manually copied to the new TZ190 Enhanced firmware. Once the settings were copied over, the transition to the new TZ190 required that we disconnect the WAN cable from the TZ150 and plug it into the WAN port on the TZ190. We also just had to move the switch port cable from the TZ150 to the TZ190. The physical transition took less than ten seconds, that fast and easy, once all settings were configured on the new device.
Once the new TZ190 was in place and everything was confirmed to be working correctly, we had to ship the TZ150 out to Norco. Once the SonicWALL TZ150 arrives in Norco, it is setup with to receive a DHCP address from the modem. The Local Area Network (LAN) for each site must have different network id’s and thus the Norco office was setup with the id of 192.168.10.0. The Glendale office has the 192.168.0.0 network id.
VPN’s are now setup on each SonicWALL with, IKE using pre-shared secret, to exchange encryption keys and start authentication with a shared secret. Each SonicWALL is also setup with a unique identifier so it can be located on the internet. Once the SonicWALL make contact with each other, the data they send to each other is encrypted with the Triple Data Encryption Standard (3DES). The tunnel is complete.
Now that both sites are talking to each other through this secure tunnel, employees can work as if they were in the same office and owners can rest assured that data being transferred between sites is safe from brute force attacks.