cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
365
Views
0
Helpful
1
Replies

Secure Management of RV1xx over IPSec VPN?

dave00001111111
Level 1
Level 1

hi guys, 

I'm trying to find a solution for a problem and hoping someone can help or tell me if it's just not possible? 

I'd like to enable secure remote management & monitoring of a small network of RV1nn devices over the Internet.  My plan was to employ IPSec VPN tunnels from my central office (currently an RV042 but planning to change to an ASA) to each remote router. 

This works well but I need to isolate the management network from the user network i.e. use OOB management.  I'm struggling to find out how I can configure an IP address on the RV which is accessible only over the IPSec tunnel.  Any suggestions?

The desired network connection would, as an example, look like this:

The users' RV180W is connected to the Internet.  Users on site receive IP addresses (DHCP) in the 192.168.1.n range from the RV.

The central office RV042 is on 10.10.10.x 

IPSec tunnel from the central office RV042 on 10.10.10.x to the users RV180W on 10.10.11.1 allowing access to the HTTPS management interface of the RV180W. 

Any suggestions welcome!

 

Thanks

Dave

  

1 Reply 1

adawa
Level 3
Level 3

Hello, dave.

Adding an ASA 5505 on your central office can help you manage those IP address to isolate and help alleviate VPN load on your central router. Are you also looking at doing SSL VPN? Let me know if you have additional concerns or e-mail (adawa@cisco.com) me directly. Kind regards.