Avaya G430 Manual page 485

Administering branch gateway
Hide thumbs Also See for G430:
Table of Contents

Advertisement

• Access control list –
global parameters
- crypto isakmp invalid-spi-recovery
- crypto ipsec nat-transparency udp-encapsulation
- crypto isakmp nat keepalive
assigning a crypto-list to an interface
- crypto ipsec df-bit
- crypto ipsec minimal-pmtu
- ip crypto-group
Site-to-site IPSec VPN
This section describes the concepts and procedures for VPN configuration.
To configure a site-to-site IPSec VPN, two devices (the Branch Gateway and a peer Gateway)
must be configured symmetrically.
In some cases, you may wish to configure global VPN parameters (see
parameters
Note:
In the following sections, all IPSec VPN parameters that you must configure are indicated
as mandatory parameters. Non-mandatory VPN parameters have default values that are
used unless otherwise set. Thus for example, although it is mandatory to define at least one
ISAKMP policy, it is not mandatory to set the values for that ISAKMP policy since the Branch
Gateway contains default ISAKMP policy settings.
Related topics:
VPN peer coordination
Configuring ISAKMP policies
Configuring transform-sets
Configuring ISAKMP peer information
Administering Avaya G430 Branch Gateway
• ip-protocol
• tcp
• udp
• icmp
• dscp
• fragment
ip access-control-list
on page 499
on page 499).
on page 486
on page 486
on page 488
on page 498
on page 500
on page 489
IPSec VPN
Configuring global
October 2013
485

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents