Security; Routing - Nortel BSR222 Configuration

Business secure router
Hide thumbs Also See for BSR222:
Table of Contents

Advertisement

70 Chapter 4 User Notes
VPN Clients can have dynamically assigned IP addresses, or they can have a
statically assigned addresses. However, the router does not support both
modes at once. All addresses must either be dynamically assigned, or they
must all be statically assigned.
7
Establishing a Client Tunnel From One Business Secure Router to Another
When defining a Client Termination account for another Business Secure Router
that will connect using Contivity Client Emulation, the following configuration is
required:
Encryption must be Triple DES with SHA1 integrity, or Triple DES with
MD5 integrity.
IKE Encryption must be Triple DES with Diffie-Hellman Group 2.
Perfect Forward Secrecy (PFS) must be enabled.

Security

1
Exporting or Saving Self-Signed Certificate
To export or save a self-signed certificate, click details (the icon that looks like a
paper note), then click 'Export' or copy the PEM text into the clipboard, and paste
into a file.

Routing

1
RIP Version Advertisement Control
To change the version of generated RIP advertisements, the following CLI
command needs to be used
ip rip mode [enif0|enif1] [in|out] [0|1|2|3]
where:
'enif0' is the LAN side, and 'enif1' is the WAN side
'in' affects recognition of received advertisements, and
'out' applies to generated advertisements
NN47922-500

Advertisement

Table of Contents
loading

Table of Contents