Cisco ASA 5505 Configuration Manual page 1388

Asa 5500 series
Hide thumbs Also See for ASA 5505:
Table of Contents

Advertisement

Mapping Certificates to IPsec or SSL VPN Connection Profiles
Fields
Modes
The following table shows the modes in which this feature is available:
Firewall Mode
Routed
Adding or Editing a Site-to-Site Tunnel Group
The Add or Edit IPsec Site-to-Site Tunnel Group dialog box lets you specify attributes for the IPsec
site-to-site connection that you are adding. In addition, you can select IKE peer and user authentication
parameters, configure IKE keepalive monitoring, and select the default group policy.
Cisco ASA 5500 Series Configuration Guide using ASDM
64-78
The adaptive security appliances have IPv6 inside networks and the outside network is IPv6 (IPv6
addresses on the inside and outside interfaces).
Peer IP Address—Lets you specify an IP address (IPv4 or IPv6) and whether that address is static.
Connection Name—Specifies the name assigned to this connection profile. For the Edit function,
this field is display-only. You can specify that the connection name is the same as the IP address
specified in the Peer IP Address field.
Interface—Selects the interface to use for this connection.
IKE Authentication—Specifies the pre-shared key and ID certificate to use when authenticating an
IKE peer.
Pre-shared Key—Specify the value of the pre-shared key for the tunnel group. The maximum
length of the pre-shared key is 128 characters.
Identity Certificate—Specifies the name of the identity certificate, if available, to use for
authentication.
Manage—Opens the Manage CA Certificates dialog box, on which you can see the certificates
that are already configured, add new certificates, show details for a certificate, and edit or delete
a certificate.
Protected Networks—Selects or specifies the local and remote network protected for this
connection.
Local Network—Specifies the IP address of the local network.
...—Opens the Browse Local Network dialog box, in which you can select a local network.
Remote Network—Specifies the IP address of the remote network.
...—Opens the Browse Remote Network dialog box, in which you can select a remote network.
Encryption Algorithm—Specifies the encryption algorithms to use in the IKE and IPsec proposals.
IKE Proposal—Specifies one or more encryption algorithms to use for the IKE proposal.
Manage—Opens the Configure IKE Proposals dialog box.
IPsec Proposal—Specifies one or more encryption algorithms to use for the IPsec proposal.
Security Context
Transparent Single
Multiple
Context
System
Chapter 64
General VPN Setup
OL-20339-01

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Asa 5510Asa 5540Asa 5520Asa 5550Asa 5580

Table of Contents