!
! Activate the crypto list and the access control list on the public interface
!
interface fastethernet 10/2
ip crypto-group 901
ip access-group 301 in
ip access-group 302 out
exit
Checklist for configuring site-to-site IPSec VPN
Use
Table 134
Table 134: Checklist for configuring site-to-site IPSec VPN
Parameter
1. VPN License
2. Type of connection to the ISP
3. VPN Interface
4. VPN Local IP Address
Type
●
5. Coordinating with the VPN Remote peer
a.) VPN IKE (Control) Phase 1 Parameters
- Encryption
to gather the information for simple G450 site-to-site IPSec VPN.
Possible values
You require the serial number to
obtain the VPN license
ADSL
●
Cable Modem
●
FastEthernet10/2
●
Serial port X/Y
●
Static
●
- If static, provide:
Dynamic (DHCP/PPPoE)
●
des
●
3des
●
aes
●
aes-192
●
aes-256
●
Checklist for configuring site-to-site IPSec VPN
IP Address
Mask
Next-hop Router
Actual value
1 of 3
Issue 1 January 2008
583