Vpn Global Settings: Ike - Cisco OL-4015-08 User Manual

Cisco router and security device manager user's guide
Table of Contents

Advertisement

Chapter 12
VPN Global Settings
IPSec Security Association (SA) Lifetime (Kilobytes)

VPN Global Settings: IKE

Enable IKE
Caution
Enable Aggressive mode
Identity (of this router)
XAuth Timeout
Enable Dead Peer Detection (DPD)
OL-4015-08
The number of kilobytes that the router can send over the VPN connection before
the IPSec SA expires. The SA will be renewed after the shortest lifetimes is
reached.
This window lets you specify global settings for IKE and IPSEC.
Leave this box checked if you want to use VPN.
If IKE is disabled, VPN configurations will not work.
The Aggressive Mode feature allows you to specify RADIUS tunnel attributes for
an IPSec peer and to initiate an IKE aggressive mode negotiation with the tunnel
attributes.
This field specifies the way the router will identify itself. Select either IP address
or host name.
The number of seconds the router is to wait for a response from a system requiring
XAuth authentication.
Dead Peer Detection (DPD) enables a router to detect a dead peer and, if detected,
delete the IPSec and IKE security associations with that peer.
The Enable Dead Peer Detection checkbox is disabled when the Cisco IOS image
that the router is using does not support DPD.
Cisco Router and Security Device Manager Version 2.2 User's Guide
VPN Global Settings
12-23

Advertisement

Table of Contents
loading

This manual is also suitable for:

Sdm 2.2

Table of Contents