Avaya 1000 Series Configuration Manual page 236

Secure router
Hide thumbs Also See for 1000 Series:
Table of Contents

Advertisement

Remote Access VPN
Figure 37: User Group Remote Access Configuration
To create the user group configuration enter:
Router>1> configure term
Router>1/configure> interface bundle wan
Router>1/configure/interface/bundle wan> link t1 1-2
Router>1/configure/interface/bundle wan> ip address
172.16.0.1 32
Router>1/configure/interface/bundle wan> crypto internet
Note:
1.error message saying Bundle is not yet encapped.
To configure the IKE policy for negotiating with the remote VPN client needing access (note
that the IKE and IPSec policies for management (self) tunnel need to be defined in the "Self"
map):
Router>1/configure> crypto Self
Router>1/configure/crypto> dynamic
Router>1/configure/crypto/dynamic> ike policy admin
user-group
Router>1/configure/crypto/dynamic/ike/policy admin>
local-address 172.16.0.1
Router>1/configure/crypto/dynamic/ike/policy admin>
remote-id email-id sampledata admin@abc-corp.com
Router>1/configure/crypto/dynamic/ike/policy admin> key
pskforadminuser
Router>1/configure/crypto/dynamic/ike/policy admin>
proposal 1
Router>1/configure/crypto/dynamic/ike/policy
admin/proposal 1> encryption-algorithm 3des-cbc
Router>1/configure/crypto/dynamic/ike/policy
admin/proposal 1> client authentication radius pap
To configure the IPSec policy for negotiating with VPN client needing access to the security
gateway.
Router/configure/crypto/dynamic> ipsec policy admin
user-group
Router/configure/crypto/dynamic/ipsec/policy admin>
236
Avaya Secure Router 1000 Series Configuration Guide
December 2010

Advertisement

Table of Contents
loading

Table of Contents