Enabling Continuous Channel - Avaya G250 Administration

Media gateway
Hide thumbs Also See for G250:
Table of Contents

Advertisement

2. Specify no ip address and then ip address dhcp in the context of the Fast
Ethernet interface.
G350-001(config-if:FastEthernet 10/2)# no ip address
no ip address defined on this interface
G350-001(config-if:FastEthernet 10/2)# ip address dhcp
Done!
3. Exit the context of the interface, and set the interface name as the next hop. For
example:
G350-001(config-if:FastEthernet 10/2)#exit
G350-001(config)# ip route 5.0.0.0 255.0.0.0 FastEthernet 10/2
Done!

Enabling continuous channel

An IPSec VPN connection exists as long as traffic is traversing the connection, or the timeouts
have not expired. However, there are advantages to keeping the connection continuously alive,
such as eliminating the waiting time necessary to construct a new IPSec VPN connection.
The G250/G350 IPSec VPN feature supports continuous channel, which maintains a
continuous IPSec VPN connection. That means that when you activate the ip crypto-group
command on the defined interface, the IPSec VPN tunnel is immediately started, even if no
traffic is traversing the interface and the timeouts have expired.
You can set continuous channel for either or both IKE phase 1 and IKE phase 2, as follows:
To set continuous channel for IKE phase 1, use the continuous-channel command
when configuring the crypto isakmp peer information (see
information
G350-001# crypto isakmp peer address 149.49.70.1
G350-001(config-peer:149.49.70.1)# continuous-channel
Done!
To set continuous channel for IKE phase 2, use the continuous-channel command
when configuring the crypto map (see
example:
G350-001# crypto map 1
G350-001(config-crypto:1)# continuous-channel
Done!
on page 371). For example:
Configuring ISAKMP peer
Configuring crypto maps
Typical installations
on page 375). For
Issue 1.1 June 2005
395

Advertisement

Table of Contents
loading

This manual is also suitable for:

G350

Table of Contents