{"id":228,"date":"2022-04-25T07:33:20","date_gmt":"2022-04-25T11:33:20","guid":{"rendered":"https:\/\/opentextbc.ca\/paloalto\/chapter\/site-to-site-vpn\/"},"modified":"2023-11-28T19:05:27","modified_gmt":"2023-11-29T00:05:27","slug":"site-to-site-vpn","status":"publish","type":"chapter","link":"https:\/\/opentextbc.ca\/paloalto\/chapter\/site-to-site-vpn\/","title":{"raw":"3.3 Site-to-Site VPN","rendered":"3.3 Site-to-Site VPN"},"content":{"raw":"<div class=\"textbox textbox--learning-objectives\"><header class=\"textbox__header\">\n<p class=\"textbox__title\">Learning Objectives<\/p>\n\n<\/header>\n<div class=\"textbox__content\">\n<ul>\n \t<li>Configure site-to-site VPN<\/li>\n \t<li>Configure static routing<\/li>\n<\/ul>\n<\/div>\n<\/div>\n<div class=\"textbox\">\n\n<strong>Prerequisites<\/strong>:\n<ul>\n \t<li>Create Zones on both firewalls<\/li>\n \t<li>Create a tunnel interface on both firewalls<\/li>\n \t<li>Create a policy to allow VPN to Inside on both firewalls<\/li>\n \t<li>Create a policy to allow Inside to VPN on both firewalls<\/li>\n \t<li>Interface configuration<\/li>\n \t<li>Knowledge of previous labs<\/li>\n<\/ul>\n<\/div>\n<div class=\"textbox shaded\">\n\n<strong>Scenario<\/strong>: This one is a bit tricky since you will be managing both devices. A site-to-site VPN is what your company would set up if you had offices in other locations without being directly connected to each other. But in this lab, we'll just take it easy and assume that they have a direct connection to each other. So, we are going to configure site-to-site VPN between two Palo Alto firewalls. Then, you should be able to ping from client-1 to client-2.\n\n<\/div>\n\n[caption id=\"attachment_227\" align=\"aligncenter\" width=\"600\"]<img class=\"wp-image-217\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2022\/04\/2022-04-25-02-05-17-image.png\" alt=\"Main scenario\" width=\"600\" height=\"305\"> Figure 3.54: Main scenario[\/caption]\n<table class=\"grid\" style=\"border-collapse: collapse; width: 100%; height: 118px;\" border=\"0\"><caption>Table 3.8: Addressing Table<\/caption>\n<tbody>\n<tr style=\"height: 15px;\">\n<th style=\"width: 50%; height: 15px;\" scope=\"col\">Device<\/th>\n<th style=\"width: 50%; height: 15px;\" scope=\"col\">Configuration<\/th>\n<\/tr>\n<tr style=\"height: 47px;\">\n<td style=\"width: 50%; height: 47px;\">Site-1<\/td>\n<td style=\"width: 50%; height: 47px;\">management: 192.168.0.1\/24\nEthernet1\/1: 10.0.0.1\/24\nEthernet1\/2: 1.1.1.1\/24<\/td>\n<\/tr>\n<tr style=\"height: 11px;\">\n<td style=\"width: 50%; height: 11px;\">Site-2<\/td>\n<td style=\"width: 50%; height: 11px;\">management: 192.168.0.2\/24\nEthernet1\/1: 172.16.10.1\/24\nEthernet1\/2: 1.1.1.2\/24<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Site1-Client<\/td>\n<td style=\"width: 50%; height: 15px;\">eth0: 10.0.0.2\/24 GW: 10.0.0.1<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Site2-Client<\/td>\n<td style=\"width: 50%; height: 15px;\">eth0: 172.16.10.2\/24 GW: 172.16.10.1<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Management1<\/td>\n<td style=\"width: 50%; height: 15px;\">eth0: 192.168.0.3\/24<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<table class=\"grid\" style=\"border-collapse: collapse; width: 100%;\" border=\"0\"><caption>Table 3.9: Zone Configuration for Site1<\/caption>\n<tbody>\n<tr>\n<th style=\"width: 50%;\" scope=\"col\">Zone<\/th>\n<th style=\"width: 50%;\" scope=\"col\">Interface<\/th>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\">Inside<\/td>\n<td style=\"width: 50%;\">Ethernet1\/1<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\">VPN<\/td>\n<td style=\"width: 50%;\">Ethernet1\/2, tunnel.1<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<table class=\"grid\" style=\"border-collapse: collapse; width: 100%; height: 45px;\" border=\"0\"><caption>Table 3.10: Zone Configuration for Site2<\/caption>\n<tbody>\n<tr style=\"height: 15px;\">\n<th style=\"width: 50%; height: 15px;\" scope=\"col\">Zone<\/th>\n<th style=\"width: 50%; height: 15px;\" scope=\"col\">Interface<\/th>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Inside<\/td>\n<td style=\"width: 50%; height: 15px;\">Ethernet1\/1<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">VPN<\/td>\n<td style=\"width: 50%; height: 15px;\">Ethernet1\/2, tunnel.1<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<h2>Create an IKE Gateway<\/h2>\nUnder <strong>Network &gt; Network Profiles &gt; IKE Gateways<\/strong>, click <b>Add<\/b>.\n\n[caption id=\"attachment_227\" align=\"aligncenter\" width=\"1026\"]<img class=\"wp-image-218 size-full\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2023\/11\/S1.jpg\" alt=\"Add an IKE Gateways\" width=\"1026\" height=\"830\"> Figure 3.55: Add an IKE Gateway[\/caption]\n<p style=\"page-break-before: always;\">On the Site1 firewall, configure these settings:<\/p>\n\n<table class=\"grid\" style=\"border-collapse: collapse; width: 100%; height: 105px;\" border=\"0\"><caption>Table 3.11: Site1 IKE Gateway Configuration<\/caption>\n<tbody>\n<tr style=\"height: 15px;\">\n<th style=\"width: 50%; height: 15px;\" scope=\"col\">Parameter<\/th>\n<th style=\"width: 50%; height: 15px;\" scope=\"col\">Value<\/th>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Interface<\/td>\n<td style=\"width: 50%; height: 15px;\">Ethernet1\/2<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Local IP Address<\/td>\n<td style=\"width: 50%; height: 15px;\">1.1.1.1\/24<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Peer IP Address Type<\/td>\n<td style=\"width: 50%; height: 15px;\">IP<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Peer Address<\/td>\n<td style=\"width: 50%; height: 15px;\">1.1.1.2<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Pre-shared Key<\/td>\n<td style=\"width: 50%; height: 15px;\"><em>Password Here<\/em><\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Confirm Pre-shared key<\/td>\n<td style=\"width: 50%; height: 15px;\"><em>Confirm Password Here<\/em><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n[caption id=\"attachment_227\" align=\"aligncenter\" width=\"600\"]<img class=\"wp-image-219\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2023\/11\/S2.jpg\" alt=\"Site1 Firewall- IKE Gateway Configuration\" width=\"600\" height=\"485\"> Figure 3.56: Site1 Firewall: IKE Gateway Configuration[\/caption]\n\nThen press <strong>OK<\/strong>.\n<p style=\"page-break-before: always;\">On the Site2 firewall, configure these settings:<\/p>\n\n<table class=\"grid\" style=\"border-collapse: collapse; width: 100%; height: 105px;\" border=\"0\"><caption>Table 3.12: Site2 IKE Gateway Configuration<\/caption>\n<tbody>\n<tr style=\"height: 15px;\">\n<th style=\"width: 50%; height: 15px;\" scope=\"col\">Parameters<\/th>\n<th style=\"width: 50%; height: 15px;\" scope=\"col\">Value<\/th>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Interface<\/td>\n<td style=\"width: 50%; height: 15px;\">Ethernet1\/2<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Local IP Address<\/td>\n<td style=\"width: 50%; height: 15px;\">1.1.1.2\/24<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Peer IP Address Type<\/td>\n<td style=\"width: 50%; height: 15px;\">IP<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Peer Address<\/td>\n<td style=\"width: 50%; height: 15px;\">1.1.1.1<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Pre-shared Key<\/td>\n<td style=\"width: 50%; height: 15px;\"><em>Same Password as before here<\/em><\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Confirm Pre-shared key<\/td>\n<td style=\"width: 50%; height: 15px;\"><em>Confirm same password as before here<\/em><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n[caption id=\"attachment_227\" align=\"aligncenter\" width=\"600\"]<img class=\"wp-image-220\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2023\/11\/S3.jpg\" alt=\"Site2 Firewall- IKE Gateway Configuration\" width=\"600\" height=\"485\"> Figure 3.57: Site2 Firewall: IKE Gateway Configuration[\/caption]\n\nThen press <strong>OK<\/strong>.\n<h2>Create an IPsec Tunnel<\/h2>\nUnder <strong>Network &gt; IPsec Tunnel<\/strong>, click <b>Add<\/b>.\n\n[caption id=\"attachment_227\" align=\"aligncenter\" width=\"1026\"]<img class=\"wp-image-221 size-full\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2023\/11\/S4.jpg\" alt=\"Site1 Firewall- Add an IPSEC Tunnels\" width=\"1026\" height=\"830\"> Figure 3.58: Site1 Firewall: Add an IPsec Tunnel[\/caption]\n<p style=\"page-break-before: always;\">On both firewalls, configure these settings:<\/p>\n\n<table class=\"grid\" style=\"border-collapse: collapse; width: 100%;\" border=\"0\"><caption>Table 3.13: IPsec Tunnel Configuration<\/caption>\n<tbody>\n<tr>\n<th style=\"width: 50%;\" scope=\"col\">Parameters<\/th>\n<th style=\"width: 50%;\" scope=\"col\">Value<\/th>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\">Tunnel Interface<\/td>\n<td style=\"width: 50%;\">tunnel.1<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\">IKE Gateway<\/td>\n<td style=\"width: 50%;\"><em>The one you created on the respective firewall<\/em><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n[caption id=\"attachment_227\" align=\"aligncenter\" width=\"1026\"]<img class=\"wp-image-222 size-full\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2023\/11\/S5.jpg\" alt=\"Site1 and Site 2 Firewall- IPSEC Tunnel Configuration\" width=\"1026\" height=\"830\"> Figure 3.59: Site1 and Site2 Firewall: IPsec Tunnel Configuration[\/caption]\n<h2 style=\"page-break-before: always;\">Create Static Routes<\/h2>\nUnder <strong>Network &gt; Virtual Routers<\/strong>, click default.\n\n[caption id=\"attachment_227\" align=\"aligncenter\" width=\"1026\"]<img class=\"wp-image-223 size-full\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2023\/11\/S6.jpg\" alt=\"Virtual Routers Configuration\" width=\"1026\" height=\"830\"> Figure 3.60: Virtual Routers Configuration[\/caption]\n<p style=\"page-break-before: always;\">Under the static routes tab, click <b>Add<\/b>.<\/p>\n\n\n[caption id=\"attachment_227\" align=\"aligncenter\" width=\"1026\"]<img class=\"wp-image-224 size-full\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2023\/11\/S7.jpg\" alt=\"Add a Static Route in the Site1\" width=\"1026\" height=\"830\"> Figure 3.61: Add a Static Route in the Site1[\/caption]\n<p style=\"page-break-before: always;\">On the Site1 firewall, configure these settings:<\/p>\n\n<table class=\"grid\" style=\"border-collapse: collapse; width: 100%;\" border=\"0\"><caption>Table 3.14: Site1 Static Route Configuration<\/caption>\n<tbody>\n<tr>\n<th style=\"width: 50%;\" scope=\"col\">Parameters<\/th>\n<th style=\"width: 50%;\" scope=\"col\">Value<\/th>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\">Destination<\/td>\n<td style=\"width: 50%;\">172.16.10.0\/24<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\">Interface<\/td>\n<td style=\"width: 50%;\">tunnel.1<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\">Next Hop<\/td>\n<td style=\"width: 50%;\">None<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n[caption id=\"attachment_227\" align=\"aligncenter\" width=\"1026\"]<img class=\"wp-image-225 size-full\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2023\/11\/S8.jpg\" alt=\"Static Route Configuration in the Site 1\" width=\"1026\" height=\"830\"> Figure 3.62: Static Route Configuration in the Site1[\/caption]\n<p style=\"page-break-before: always;\">On the Site2 firewall, configure these settings:<\/p>\n\n<table class=\"grid\" style=\"border-collapse: collapse; width: 100%;\" border=\"0\"><caption>Table 3.15: Site2 Static Route Configuration<\/caption>\n<tbody>\n<tr>\n<th style=\"width: 50%;\" scope=\"col\">Parameters<\/th>\n<th style=\"width: 50%;\" scope=\"col\">Value<\/th>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\">Destination<\/td>\n<td style=\"width: 50%;\">10.0.0.0\/24<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\">Interface<\/td>\n<td style=\"width: 50%;\">tunnel.1<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\">Next Hop<\/td>\n<td style=\"width: 50%;\">None<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n[caption id=\"attachment_227\" align=\"aligncenter\" width=\"1026\"]<img class=\"wp-image-226 size-full\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2023\/11\/2022-04-25-02-52-22-image.png\" alt=\"Static Route Configuration in the Site 2\" width=\"1026\" height=\"830\"> Figure 3.63: Static Route Configuration in the Site 2[\/caption]\n\nThen press <strong>OK<\/strong>.\n<h2 style=\"page-break-before: always;\">Test the Site-to-Site<\/h2>\nOn any client device, try and ping the other client on the other site.\n\n[caption id=\"attachment_227\" align=\"aligncenter\" width=\"1026\"]<img class=\"wp-image-227 size-full\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2023\/11\/2022-04-25-02-54-25-image.png\" alt=\"Verify your configuration\" width=\"1026\" height=\"830\"> Figure 3.64: Verify your configuration[\/caption]\n\nIf you can ping the other client in the other site, everything worked!","rendered":"<div class=\"textbox textbox--learning-objectives\">\n<header class=\"textbox__header\">\n<p class=\"textbox__title\">Learning Objectives<\/p>\n<\/header>\n<div class=\"textbox__content\">\n<ul>\n<li>Configure site-to-site VPN<\/li>\n<li>Configure static routing<\/li>\n<\/ul>\n<\/div>\n<\/div>\n<div class=\"textbox\">\n<p><strong>Prerequisites<\/strong>:<\/p>\n<ul>\n<li>Create Zones on both firewalls<\/li>\n<li>Create a tunnel interface on both firewalls<\/li>\n<li>Create a policy to allow VPN to Inside on both firewalls<\/li>\n<li>Create a policy to allow Inside to VPN on both firewalls<\/li>\n<li>Interface configuration<\/li>\n<li>Knowledge of previous labs<\/li>\n<\/ul>\n<\/div>\n<div class=\"textbox shaded\">\n<p><strong>Scenario<\/strong>: This one is a bit tricky since you will be managing both devices. A site-to-site VPN is what your company would set up if you had offices in other locations without being directly connected to each other. But in this lab, we&#8217;ll just take it easy and assume that they have a direct connection to each other. So, we are going to configure site-to-site VPN between two Palo Alto firewalls. Then, you should be able to ping from client-1 to client-2.<\/p>\n<\/div>\n<figure id=\"attachment_227\" aria-describedby=\"caption-attachment-227\" style=\"width: 600px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-217\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2022\/04\/2022-04-25-02-05-17-image.png\" alt=\"Main scenario\" width=\"600\" height=\"305\" srcset=\"https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2022\/04\/2022-04-25-02-05-17-image.png 980w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2022\/04\/2022-04-25-02-05-17-image-300x152.png 300w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2022\/04\/2022-04-25-02-05-17-image-768x390.png 768w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2022\/04\/2022-04-25-02-05-17-image-65x33.png 65w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2022\/04\/2022-04-25-02-05-17-image-225x114.png 225w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2022\/04\/2022-04-25-02-05-17-image-350x178.png 350w\" sizes=\"auto, (max-width: 600px) 100vw, 600px\" \/><figcaption id=\"caption-attachment-227\" class=\"wp-caption-text\">Figure 3.54: Main scenario<\/figcaption><\/figure>\n<table class=\"grid\" style=\"border-collapse: collapse; width: 100%; height: 118px;\">\n<caption>Table 3.8: Addressing Table<\/caption>\n<tbody>\n<tr style=\"height: 15px;\">\n<th style=\"width: 50%; height: 15px;\" scope=\"col\">Device<\/th>\n<th style=\"width: 50%; height: 15px;\" scope=\"col\">Configuration<\/th>\n<\/tr>\n<tr style=\"height: 47px;\">\n<td style=\"width: 50%; height: 47px;\">Site-1<\/td>\n<td style=\"width: 50%; height: 47px;\">management: 192.168.0.1\/24<br \/>\nEthernet1\/1: 10.0.0.1\/24<br \/>\nEthernet1\/2: 1.1.1.1\/24<\/td>\n<\/tr>\n<tr style=\"height: 11px;\">\n<td style=\"width: 50%; height: 11px;\">Site-2<\/td>\n<td style=\"width: 50%; height: 11px;\">management: 192.168.0.2\/24<br \/>\nEthernet1\/1: 172.16.10.1\/24<br \/>\nEthernet1\/2: 1.1.1.2\/24<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Site1-Client<\/td>\n<td style=\"width: 50%; height: 15px;\">eth0: 10.0.0.2\/24 GW: 10.0.0.1<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Site2-Client<\/td>\n<td style=\"width: 50%; height: 15px;\">eth0: 172.16.10.2\/24 GW: 172.16.10.1<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Management1<\/td>\n<td style=\"width: 50%; height: 15px;\">eth0: 192.168.0.3\/24<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<table class=\"grid\" style=\"border-collapse: collapse; width: 100%;\">\n<caption>Table 3.9: Zone Configuration for Site1<\/caption>\n<tbody>\n<tr>\n<th style=\"width: 50%;\" scope=\"col\">Zone<\/th>\n<th style=\"width: 50%;\" scope=\"col\">Interface<\/th>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\">Inside<\/td>\n<td style=\"width: 50%;\">Ethernet1\/1<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\">VPN<\/td>\n<td style=\"width: 50%;\">Ethernet1\/2, tunnel.1<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<table class=\"grid\" style=\"border-collapse: collapse; width: 100%; height: 45px;\">\n<caption>Table 3.10: Zone Configuration for Site2<\/caption>\n<tbody>\n<tr style=\"height: 15px;\">\n<th style=\"width: 50%; height: 15px;\" scope=\"col\">Zone<\/th>\n<th style=\"width: 50%; height: 15px;\" scope=\"col\">Interface<\/th>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Inside<\/td>\n<td style=\"width: 50%; height: 15px;\">Ethernet1\/1<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">VPN<\/td>\n<td style=\"width: 50%; height: 15px;\">Ethernet1\/2, tunnel.1<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<h2>Create an IKE Gateway<\/h2>\n<p>Under <strong>Network &gt; Network Profiles &gt; IKE Gateways<\/strong>, click <b>Add<\/b>.<\/p>\n<figure id=\"attachment_227\" aria-describedby=\"caption-attachment-227\" style=\"width: 1026px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-218 size-full\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2023\/11\/S1.jpg\" alt=\"Add an IKE Gateways\" width=\"1026\" height=\"830\" srcset=\"https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S1.jpg 1026w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S1-300x243.jpg 300w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S1-1024x828.jpg 1024w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S1-768x621.jpg 768w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S1-65x53.jpg 65w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S1-225x182.jpg 225w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S1-350x283.jpg 350w\" sizes=\"auto, (max-width: 1026px) 100vw, 1026px\" \/><figcaption id=\"caption-attachment-227\" class=\"wp-caption-text\">Figure 3.55: Add an IKE Gateway<\/figcaption><\/figure>\n<p style=\"page-break-before: always;\">On the Site1 firewall, configure these settings:<\/p>\n<table class=\"grid\" style=\"border-collapse: collapse; width: 100%; height: 105px;\">\n<caption>Table 3.11: Site1 IKE Gateway Configuration<\/caption>\n<tbody>\n<tr style=\"height: 15px;\">\n<th style=\"width: 50%; height: 15px;\" scope=\"col\">Parameter<\/th>\n<th style=\"width: 50%; height: 15px;\" scope=\"col\">Value<\/th>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Interface<\/td>\n<td style=\"width: 50%; height: 15px;\">Ethernet1\/2<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Local IP Address<\/td>\n<td style=\"width: 50%; height: 15px;\">1.1.1.1\/24<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Peer IP Address Type<\/td>\n<td style=\"width: 50%; height: 15px;\">IP<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Peer Address<\/td>\n<td style=\"width: 50%; height: 15px;\">1.1.1.2<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Pre-shared Key<\/td>\n<td style=\"width: 50%; height: 15px;\"><em>Password Here<\/em><\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Confirm Pre-shared key<\/td>\n<td style=\"width: 50%; height: 15px;\"><em>Confirm Password Here<\/em><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<figure id=\"attachment_227\" aria-describedby=\"caption-attachment-227\" style=\"width: 600px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-219\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2023\/11\/S2.jpg\" alt=\"Site1 Firewall- IKE Gateway Configuration\" width=\"600\" height=\"485\" srcset=\"https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S2.jpg 1026w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S2-300x243.jpg 300w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S2-1024x828.jpg 1024w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S2-768x621.jpg 768w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S2-65x53.jpg 65w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S2-225x182.jpg 225w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S2-350x283.jpg 350w\" sizes=\"auto, (max-width: 600px) 100vw, 600px\" \/><figcaption id=\"caption-attachment-227\" class=\"wp-caption-text\">Figure 3.56: Site1 Firewall: IKE Gateway Configuration<\/figcaption><\/figure>\n<p>Then press <strong>OK<\/strong>.<\/p>\n<p style=\"page-break-before: always;\">On the Site2 firewall, configure these settings:<\/p>\n<table class=\"grid\" style=\"border-collapse: collapse; width: 100%; height: 105px;\">\n<caption>Table 3.12: Site2 IKE Gateway Configuration<\/caption>\n<tbody>\n<tr style=\"height: 15px;\">\n<th style=\"width: 50%; height: 15px;\" scope=\"col\">Parameters<\/th>\n<th style=\"width: 50%; height: 15px;\" scope=\"col\">Value<\/th>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Interface<\/td>\n<td style=\"width: 50%; height: 15px;\">Ethernet1\/2<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Local IP Address<\/td>\n<td style=\"width: 50%; height: 15px;\">1.1.1.2\/24<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Peer IP Address Type<\/td>\n<td style=\"width: 50%; height: 15px;\">IP<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Peer Address<\/td>\n<td style=\"width: 50%; height: 15px;\">1.1.1.1<\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Pre-shared Key<\/td>\n<td style=\"width: 50%; height: 15px;\"><em>Same Password as before here<\/em><\/td>\n<\/tr>\n<tr style=\"height: 15px;\">\n<td style=\"width: 50%; height: 15px;\">Confirm Pre-shared key<\/td>\n<td style=\"width: 50%; height: 15px;\"><em>Confirm same password as before here<\/em><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<figure id=\"attachment_227\" aria-describedby=\"caption-attachment-227\" style=\"width: 600px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-220\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2023\/11\/S3.jpg\" alt=\"Site2 Firewall- IKE Gateway Configuration\" width=\"600\" height=\"485\" srcset=\"https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S3.jpg 1026w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S3-300x243.jpg 300w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S3-1024x828.jpg 1024w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S3-768x621.jpg 768w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S3-65x53.jpg 65w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S3-225x182.jpg 225w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S3-350x283.jpg 350w\" sizes=\"auto, (max-width: 600px) 100vw, 600px\" \/><figcaption id=\"caption-attachment-227\" class=\"wp-caption-text\">Figure 3.57: Site2 Firewall: IKE Gateway Configuration<\/figcaption><\/figure>\n<p>Then press <strong>OK<\/strong>.<\/p>\n<h2>Create an IPsec Tunnel<\/h2>\n<p>Under <strong>Network &gt; IPsec Tunnel<\/strong>, click <b>Add<\/b>.<\/p>\n<figure id=\"attachment_227\" aria-describedby=\"caption-attachment-227\" style=\"width: 1026px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-221 size-full\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2023\/11\/S4.jpg\" alt=\"Site1 Firewall- Add an IPSEC Tunnels\" width=\"1026\" height=\"830\" srcset=\"https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S4.jpg 1026w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S4-300x243.jpg 300w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S4-1024x828.jpg 1024w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S4-768x621.jpg 768w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S4-65x53.jpg 65w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S4-225x182.jpg 225w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S4-350x283.jpg 350w\" sizes=\"auto, (max-width: 1026px) 100vw, 1026px\" \/><figcaption id=\"caption-attachment-227\" class=\"wp-caption-text\">Figure 3.58: Site1 Firewall: Add an IPsec Tunnel<\/figcaption><\/figure>\n<p style=\"page-break-before: always;\">On both firewalls, configure these settings:<\/p>\n<table class=\"grid\" style=\"border-collapse: collapse; width: 100%;\">\n<caption>Table 3.13: IPsec Tunnel Configuration<\/caption>\n<tbody>\n<tr>\n<th style=\"width: 50%;\" scope=\"col\">Parameters<\/th>\n<th style=\"width: 50%;\" scope=\"col\">Value<\/th>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\">Tunnel Interface<\/td>\n<td style=\"width: 50%;\">tunnel.1<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\">IKE Gateway<\/td>\n<td style=\"width: 50%;\"><em>The one you created on the respective firewall<\/em><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<figure id=\"attachment_227\" aria-describedby=\"caption-attachment-227\" style=\"width: 1026px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-222 size-full\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2023\/11\/S5.jpg\" alt=\"Site1 and Site 2 Firewall- IPSEC Tunnel Configuration\" width=\"1026\" height=\"830\" srcset=\"https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S5.jpg 1026w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S5-300x243.jpg 300w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S5-1024x828.jpg 1024w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S5-768x621.jpg 768w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S5-65x53.jpg 65w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S5-225x182.jpg 225w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S5-350x283.jpg 350w\" sizes=\"auto, (max-width: 1026px) 100vw, 1026px\" \/><figcaption id=\"caption-attachment-227\" class=\"wp-caption-text\">Figure 3.59: Site1 and Site2 Firewall: IPsec Tunnel Configuration<\/figcaption><\/figure>\n<h2 style=\"page-break-before: always;\">Create Static Routes<\/h2>\n<p>Under <strong>Network &gt; Virtual Routers<\/strong>, click default.<\/p>\n<figure id=\"attachment_227\" aria-describedby=\"caption-attachment-227\" style=\"width: 1026px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-223 size-full\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2023\/11\/S6.jpg\" alt=\"Virtual Routers Configuration\" width=\"1026\" height=\"830\" srcset=\"https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S6.jpg 1026w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S6-300x243.jpg 300w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S6-1024x828.jpg 1024w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S6-768x621.jpg 768w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S6-65x53.jpg 65w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S6-225x182.jpg 225w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S6-350x283.jpg 350w\" sizes=\"auto, (max-width: 1026px) 100vw, 1026px\" \/><figcaption id=\"caption-attachment-227\" class=\"wp-caption-text\">Figure 3.60: Virtual Routers Configuration<\/figcaption><\/figure>\n<p style=\"page-break-before: always;\">Under the static routes tab, click <b>Add<\/b>.<\/p>\n<figure id=\"attachment_227\" aria-describedby=\"caption-attachment-227\" style=\"width: 1026px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-224 size-full\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2023\/11\/S7.jpg\" alt=\"Add a Static Route in the Site1\" width=\"1026\" height=\"830\" srcset=\"https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S7.jpg 1026w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S7-300x243.jpg 300w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S7-1024x828.jpg 1024w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S7-768x621.jpg 768w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S7-65x53.jpg 65w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S7-225x182.jpg 225w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S7-350x283.jpg 350w\" sizes=\"auto, (max-width: 1026px) 100vw, 1026px\" \/><figcaption id=\"caption-attachment-227\" class=\"wp-caption-text\">Figure 3.61: Add a Static Route in the Site1<\/figcaption><\/figure>\n<p style=\"page-break-before: always;\">On the Site1 firewall, configure these settings:<\/p>\n<table class=\"grid\" style=\"border-collapse: collapse; width: 100%;\">\n<caption>Table 3.14: Site1 Static Route Configuration<\/caption>\n<tbody>\n<tr>\n<th style=\"width: 50%;\" scope=\"col\">Parameters<\/th>\n<th style=\"width: 50%;\" scope=\"col\">Value<\/th>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\">Destination<\/td>\n<td style=\"width: 50%;\">172.16.10.0\/24<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\">Interface<\/td>\n<td style=\"width: 50%;\">tunnel.1<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\">Next Hop<\/td>\n<td style=\"width: 50%;\">None<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<figure id=\"attachment_227\" aria-describedby=\"caption-attachment-227\" style=\"width: 1026px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-225 size-full\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2023\/11\/S8.jpg\" alt=\"Static Route Configuration in the Site 1\" width=\"1026\" height=\"830\" srcset=\"https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S8.jpg 1026w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S8-300x243.jpg 300w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S8-1024x828.jpg 1024w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S8-768x621.jpg 768w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S8-65x53.jpg 65w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S8-225x182.jpg 225w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/S8-350x283.jpg 350w\" sizes=\"auto, (max-width: 1026px) 100vw, 1026px\" \/><figcaption id=\"caption-attachment-227\" class=\"wp-caption-text\">Figure 3.62: Static Route Configuration in the Site1<\/figcaption><\/figure>\n<p style=\"page-break-before: always;\">On the Site2 firewall, configure these settings:<\/p>\n<table class=\"grid\" style=\"border-collapse: collapse; width: 100%;\">\n<caption>Table 3.15: Site2 Static Route Configuration<\/caption>\n<tbody>\n<tr>\n<th style=\"width: 50%;\" scope=\"col\">Parameters<\/th>\n<th style=\"width: 50%;\" scope=\"col\">Value<\/th>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\">Destination<\/td>\n<td style=\"width: 50%;\">10.0.0.0\/24<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\">Interface<\/td>\n<td style=\"width: 50%;\">tunnel.1<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\">Next Hop<\/td>\n<td style=\"width: 50%;\">None<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<figure id=\"attachment_227\" aria-describedby=\"caption-attachment-227\" style=\"width: 1026px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-226 size-full\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2023\/11\/2022-04-25-02-52-22-image.png\" alt=\"Static Route Configuration in the Site 2\" width=\"1026\" height=\"830\" srcset=\"https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/2022-04-25-02-52-22-image.png 1026w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/2022-04-25-02-52-22-image-300x243.png 300w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/2022-04-25-02-52-22-image-1024x828.png 1024w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/2022-04-25-02-52-22-image-768x621.png 768w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/2022-04-25-02-52-22-image-65x53.png 65w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/2022-04-25-02-52-22-image-225x182.png 225w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/2022-04-25-02-52-22-image-350x283.png 350w\" sizes=\"auto, (max-width: 1026px) 100vw, 1026px\" \/><figcaption id=\"caption-attachment-227\" class=\"wp-caption-text\">Figure 3.63: Static Route Configuration in the Site 2<\/figcaption><\/figure>\n<p>Then press <strong>OK<\/strong>.<\/p>\n<h2 style=\"page-break-before: always;\">Test the Site-to-Site<\/h2>\n<p>On any client device, try and ping the other client on the other site.<\/p>\n<figure id=\"attachment_227\" aria-describedby=\"caption-attachment-227\" style=\"width: 1026px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-227 size-full\" src=\"https:\/\/opentextbc.ca\/wp-content\/uploads\/sites\/445\/2023\/11\/2022-04-25-02-54-25-image.png\" alt=\"Verify your configuration\" width=\"1026\" height=\"830\" srcset=\"https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/2022-04-25-02-54-25-image.png 1026w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/2022-04-25-02-54-25-image-300x243.png 300w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/2022-04-25-02-54-25-image-1024x828.png 1024w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/2022-04-25-02-54-25-image-768x621.png 768w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/2022-04-25-02-54-25-image-65x53.png 65w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/2022-04-25-02-54-25-image-225x182.png 225w, https:\/\/opentextbc.ca\/paloalto\/wp-content\/uploads\/sites\/445\/2023\/11\/2022-04-25-02-54-25-image-350x283.png 350w\" sizes=\"auto, (max-width: 1026px) 100vw, 1026px\" \/><figcaption id=\"caption-attachment-227\" class=\"wp-caption-text\">Figure 3.64: Verify your configuration<\/figcaption><\/figure>\n<p>If you can ping the other client in the other site, everything worked!<\/p>\n","protected":false},"author":124,"menu_order":3,"template":"","meta":{"pb_show_title":"on","pb_short_title":"","pb_subtitle":"","pb_authors":[],"pb_section_license":""},"chapter-type":[],"contributor":[],"license":[],"class_list":["post-228","chapter","type-chapter","status-publish","hentry"],"part":159,"_links":{"self":[{"href":"https:\/\/opentextbc.ca\/paloalto\/wp-json\/pressbooks\/v2\/chapters\/228","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/opentextbc.ca\/paloalto\/wp-json\/pressbooks\/v2\/chapters"}],"about":[{"href":"https:\/\/opentextbc.ca\/paloalto\/wp-json\/wp\/v2\/types\/chapter"}],"author":[{"embeddable":true,"href":"https:\/\/opentextbc.ca\/paloalto\/wp-json\/wp\/v2\/users\/124"}],"version-history":[{"count":1,"href":"https:\/\/opentextbc.ca\/paloalto\/wp-json\/pressbooks\/v2\/chapters\/228\/revisions"}],"predecessor-version":[{"id":229,"href":"https:\/\/opentextbc.ca\/paloalto\/wp-json\/pressbooks\/v2\/chapters\/228\/revisions\/229"}],"part":[{"href":"https:\/\/opentextbc.ca\/paloalto\/wp-json\/pressbooks\/v2\/parts\/159"}],"metadata":[{"href":"https:\/\/opentextbc.ca\/paloalto\/wp-json\/pressbooks\/v2\/chapters\/228\/metadata\/"}],"wp:attachment":[{"href":"https:\/\/opentextbc.ca\/paloalto\/wp-json\/wp\/v2\/media?parent=228"}],"wp:term":[{"taxonomy":"chapter-type","embeddable":true,"href":"https:\/\/opentextbc.ca\/paloalto\/wp-json\/pressbooks\/v2\/chapter-type?post=228"},{"taxonomy":"contributor","embeddable":true,"href":"https:\/\/opentextbc.ca\/paloalto\/wp-json\/wp\/v2\/contributor?post=228"},{"taxonomy":"license","embeddable":true,"href":"https:\/\/opentextbc.ca\/paloalto\/wp-json\/wp\/v2\/license?post=228"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}