Configuring Ipsec Protection For The L2Tp Access Interface - Nortel Secure 4134 Configuration

Security — configuration and management
Hide thumbs Also See for Secure 4134:
Table of Contents

Advertisement

160 IPsec VPN configuration
Configuring IPsec protection for the L2TP access interface
Configure IPsec protection for the L2TP server.
Procedure steps
Step
1
2
3
Table 85
Variable definitions
Variable
<ike-ipsec-policy>
<untrusted-if-address>
{remote-id-type
{ip-address |
domain-name | email-id|
der-encoded-dn}}
[remote-id-data
<remote-id-data>]
[key <key>]
Copyright © 2007, Nortel Networks
.
Action
To enter the configuration mode, enter:
configure terminal
To select the L2TP access virtual interface, enter:
interface l2tp-server <server-name>
To configure IPsec protection, enter:
ipsec-protection <ike-ipsec-policy> <untrusted-if-
address> {remote-id-type {ip-address | domain-name
| email-id|der-encoded-dn}} {remote-id-data
<remote-id-data>} [key <key>]
Value
Name of crypto dynamic IKE and IPsec policy. Max
8 characters.
Address of the local crypto untrusted interface that is
used as the IKE authenticated tunnel endpoint.
Remote ID type:
ip-address: a routeable IP address already
configured on this device
domain-name: fully qualified domain name (FQDN)
email-id: email address (user FQDN)
der-encoded-dn: x509 certificate subject-name
in ascii form (default) (example: O=ACME
Corp,OU=*,C=US,CN=Wile E. Coyote)
Remote ID data. Max 48 characters.
Tells IKE to use preshared-key authentication with
this key (no key means use certificates).
Nortel Secure Router 4134
Security — Configuration and Management
NN47263-600 01.02 Standard
10.0 3 August 2007
—End—
—End—

Advertisement

Table of Contents
loading

Table of Contents