IPSec EXAMPLES
Step 2: Configure the Ethernet interface with trusted network type
Networks1/configure> interface ethernet 0
message: Configuring existing Ethernet interface
Networks1/configure interface/ethernet 0> ip address
10.0.1.1 24
Networks1/configure/interface/ethernet 0> crypto trusted
Networks1/configure/interface/ethernet 0> exit
Step 3: Display the crypto interfaces
Networks1> show crypto interfaces
Interface
Name
---------
ethernet0
wan1
Step 4: Add route to peer LAN
Networks1/configure> ip route 10.0.2.0 24 172.16.0.2
Step 5: Configure IKE to the peer gateway
Networks1/configure> crypto
Networks1/configure/crypto> ike policy Networks2 172.16.0.2
Networks1/configure/crypto/ike/policy Networks2 172.16.0.2> local-
address 172.16.0.1
message: Default proposal created with priority1-des-sha1-pre_shared-g1
message: Key String has to be configured by the user
Networks1/configure/crypto/ike/policy Networks2 172.16.0.2> key secretkey
Networks1/configure/crypto/ike/policy Networks2 172.16.0.2> proposal 1
Networks1/configure/crypto/ike/policy Networks2 172.16.0.2/proposal 1>
encryption-algorithm 3des-cbc
Networks1/configure/crypto/ike/policy Networks2 172.16.0.2/proposal 1>
exit
Networks1/configure/crypto/ike/policy Networks2 172.16.0.2> exit
144
Avaya Secure Router 1000 Series Configuration Guide
Network
Type
-------
trusted
untrusted
December 2010