
17
Cisco VPN 3000 Series Concentrators Interoperability Profile
Configuring a LAN-to-LAN IPSec Connection
Table 2 explains the fields you must complete on the Configuration | System | Tunneling | IPSec |
LAN-to-LAN | Add screen and where applicable, the VPN Consortium requirements they meet. Accept
default values for all other parameters.
*These fields already contain values derived, respectively, from the IP address of the Public interface
and from the IKE proposal, VPNC IKE A to B, that you configured previously.
Table 2 IPSec LAN-to-LAN Parameters
Cisco IPSec
Parameter Definition Value to Configure
Name A unique, descriptive name for this
LAN-to-LAN connection.
In this example the name is A to B.
Interface* The IP address of the public or WAN
interface for this LAN-to-LAN
connection.
14.15.16.17
Peer The IP address of the WAN interface
for the remote peer in this
LAN-to-LAN connection.
22.23.24.25
Digital Certificate Determines whether to use a preshared
key or a digital certificate for
authentication.
None (Use Preshared Key)
Certificate
Transmission
N/A N/A
Preshared Key The key the IPSec peers share that
identifies each to the other.
hr5x8416aa9r6
Authentication Specifies the data, or packet,
authentication method that proves that
data comes from the source you think it
comes from.
ESP/SHA/HMAC-160, the ESP
protocol using HMAC with the
SHA-1 hash function using a 160-bit
key.
Encryption
Algorithm
The data, or packet, encryption
algorithm.
3DES-168, which is Triple-DES
Encryption with a 168-bit key.
IKE Proposal* The IKE proposal with first priority.
This should be the IKE proposal you
configured previously.
In this example, VPNC IKE A to B
Local Network IP
Address and
Wildcard Mask
The network IP address and wildcard
mask for the local end of this
LAN-to-LAN connection.
IP address is 10.5.6.0
Wildcard mask is 0.0.0.255
Remote Network IP
Address and
Wildcard Mask
The network IP address and wildcard
mask for the remote end of this
LAN-to-LAN connection.
IP address is 172.23.9.0
Wildcard mask is 0.0.0.255
Kommentare zu diesen Handbüchern