Cisco ASA 5505 Configuration Manual page 213

Asa 5500 series
Hide thumbs Also See for ASA 5505:
Table of Contents

Advertisement

Chapter 7
Using the Startup Wizard
To form a secure VPN tunnel between the adaptive security appliance and a remote Cisco VPN 3000
concentrator, Cisco router, or adaptive security appliance that is acting as an Easy VPN server, perform
the following steps:
To enable the security appliance to act as an Easy VPN remote device, check the Enable Easy VPN
Step 1
remote check box. If you do not enable this feature, any host that has access to the security appliance
outside interface through a VPN tunnel can manage it remotely.
Step 2
In the Mode area, choose one of the following:
If you are using a DHCP server to generate dynamic IP addresses for hosts on your inside network,
click the Client mode radio button.
If hosts on your inside network have static IP addresses, click the Network Extension mode radio
button.
In the Group Settings area, do the following:
Step 3
a.
To use X.509 certificates to enable the IPSec main mode, click the Use X.509 Certificate radio
button. Choose the trustpoint from the drop-down list.
To enter a password for a group of users, click the Use group password radio button.
b.
Step 4
In the User Settings area, do the following:
Enter a username for your settings.
a.
Enter a password for your settings.
b.
Confirm the password for your settings.
c.
In the Easy VPN Server area, do the following:
Step 5
Enter the IP address of the primary Easy VPN server.
a.
Enter the IP address of a secondary Easy VPN server.
b.
Note
Click Next to continue.
Step 6
OL-20339-01
Enter a name for the user group.
Enter a password for the user group.
Confirm the password.
The adaptive security appliance supports a maximum of 11 Easy VPN servers: one primary and
up to ten secondary. Before you can connect the ASA Easy VPN remote device to the Easy VPN
server, you must establish network connectivity between both devices through your ISP. After
you have connected the ASA 5500 series adaptive security appliance to the DSL or cable
modem, follow the instructions provided by your ISP to complete the network connection. You
can obtain an IP address through a PPPoE server, a DHCP server, or a static configuration.
Startup Wizard Screens for the ASA 5505 Adaptive Security Appliance
Cisco ASA 5500 Series Configuration Guide using ASDM
7-15

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Asa 5510Asa 5540Asa 5520Asa 5550Asa 5580

Table of Contents