IPsec ESP Wildcard Forwarding on RV042, RV042G and RV082 VPN Routers

Objective

IPsec ESP Wildcard Forwarding establishes a private network between two computers on different networks using a wildcard key. A wildcard pre-shared key allows a group of remote users with the same level of authentication to share an Internet Key Exchange (IKE) pre-shared key without the use of the remote peer's IP address.

A wildcard mask matches (wildly with a zero) everything in the network portion of an IP address. Internet Protocol Security (IPsec) Encapsulating Security Payload (ESP) is used to route internet traffic across the VPN. It provides data confidentiality, data integrity, and data authentication between participating peers at the IP layer.

This article guides on how to configure an IPsec ESP Wildcard Forwarding on two computers at two sites having two different ISPs connected with RV042, RV042G and RV082 Series VPN Routers.

Applicable Devices

IPsec ESP Wildcard Forwarding

Site 1 Configuration

Step 1. For Site 1, you need to configure your WAN settings. To know more on how to configure WAN settings refer to Edit WAN Connection on RV016, RV042, RV042G and RV082 VPN Routers.

Step 2. Log in to the web configuration utility and choose VPN > Summary. The Summary page opens:

The Summary page displays tunnel status, including the number of tunnels used and available. It also shows a list of configured tunnels with their status, Phase 2 encryption/authentication/group, local and remote groups, remote gateway, and options to connect or configure.

Step 3. Click the Edit configuration icon under Config, to edit the VPN configuration for site 1. The Gateway To Gateway page opens:

The Gateway To Gateway page allows adding a new tunnel. Key fields include Tunnel Number, Tunnel Name, Interface, and Enable checkbox.

Under Local Group Setup:

Under Remote Group Setup:

Step 4. Scroll down to Local Group Setup section and enter the wildcard IP address, 0.0.0.0 in the IP Address field.

Note: The 0.0.0.0 IP address indicates that any remote peer configured with the shared key may establish a connection with the local peer, regardless of the IP address configured on the remote peer.

Step 5. At the Subnet Mask field, enter the wildcard mask, 0.0.0.0.

Step 6. Click Save to save the settings.

Note: To know more on how to configure gateway-to-gateway VPN refer to Configuration of Gateway to Gateway VPN on RV016, RV042, RV042G and RV082 VPN Routers.

Site 2 Configuration

Step 1. For Site 2, you need to configure your WAN settings. To know more on how to configure WAN settings refer to Edit WAN Connection on RV016, RV042, RV042G and RV082 VPN Routers.

Step 2. Log in to the web configuration utility and choose VPN > Summary. The Summary page opens:

The Summary page displays tunnel status, similar to Site 1, listing configured tunnels with their details.

Step 3. Click the Edit Configuration icon under Config icon to edit the VPN configuration for site 2. The Gateway To Gateway page opens:

The Gateway To Gateway page for Site 2 configuration is similar to Site 1, with fields for tunnel details.

Under Remote Group Setup:

Step 4. Scroll down to Remote Group Setup and enter the wildcard IP address, 0.0.0.0 in the IP Address field.

Note: The 0.0.0.0 IP address indicates that any remote peer configured with the shared key may establish a connection with the local peer, regardless of the IP address configured on the remote peer.

Step 5. At the Subnet Mask field, enter the wildcard mask, 0.0.0.0.

Step 6. Click Save to save the settings.

Note: To know more on how to configure gateway-to-gateway VPN refer to Configuration of Gateway to Gateway VPN on RV016, RV042, RV042G and RV082 VPN Routers.

PDF preview unavailable. Download the PDF instead.

smb3004-ipsec-esp-wildcard-forwarding-on-rv042-rv042g-and-rv082-vpn iText 5.5.12 ©2000-2017 iText Group NV (AGPL-version)

Related Documents

Preview Reboot and Restore Factory Default Settings for Cisco RV Series VPN Routers
This guide explains how to reboot and restore factory default settings on Cisco RV016, RV042, RV042G, and RV082 VPN Routers. It covers procedures using the physical reset button and the web configuration utility.
Preview Configure Site-to-Site VPN Connection on RV340/RV345 Routers
This document provides a step-by-step guide on how to configure a Site-to-Site Virtual Private Network (VPN) connection between RV340 and RV345 routers. It covers the objective, supported devices, software versions, and detailed configuration steps for both the local and remote routers, including network settings, IPsec profiles, and authentication methods.
Preview Cisco Secure Client - AnyConnect 5.0 for iOS 16 CC Configuration Guide
This guide provides IT personnel with instructions for configuring Cisco Secure Client - AnyConnect 5.0 for iOS 16, covering installation, operational procedures, security settings, and troubleshooting for a Common Criteria evaluated environment.
Preview Cisco RV320/RV325 Gigabit Dual WAN VPN Router Quick Start Guide
A quick start guide for installing and configuring the Cisco RV320/RV325 Gigabit Dual WAN VPN Router, covering package contents, physical installation, front/back panel features, connection steps, and basic troubleshooting.
Preview Cisco RV132W ADSL2+ Wireless-N VPN Router Quick Start Guide
Quick start guide for the Cisco RV132W ADSL2+ Wireless-N VPN Router, covering installation, features, connection setup, and basic configuration for SOHO and small businesses.
Preview Cisco ASR 900 Series IPsec Configuration Guide
This guide details the configuration of IPsec VPNs on Cisco ASR 900 Series routers, covering IKE, transform sets, virtual tunnel interfaces, and security features for network protection.
Preview Cisco RV215W Wireless-N VPN Firewall Administration Guide
This administration guide provides comprehensive instructions and configuration details for the Cisco RV215W Wireless-N VPN Firewall, covering setup, networking, security, VPN, QoS, and system administration.
Preview Configuring FlexVPN with ISE Integration
This document provides a step-by-step guide on configuring Cisco FlexVPN with Cisco Identity Services Engine (ISE) for dynamic configuration assignment to spokes. It covers prerequisites, hub and spoke configuration, ISE setup, and verification steps.