Ha Service Configuration To Support Ipsec; Modifying Ha Service To Support Ipsec - Cisco ASR 5000 Series 3G Home NodeB Administration Manual

3g home nodeb gateway
Table of Contents

Advertisement

▀ HA Service Configuration to Support IPSec

HA Service Configuration to Support IPSec
This section provides instructions for configuring HA services to support IPSec.
These instructions assume that the HA service was previously configured and system is ready to serve as an HA.
Important:
the system. For more information on commands that configure additional parameters and options, refer to the Command
Line Interface Reference.
To configure the HA service to support IPSec:
Step 1
Modify HA service configuration by following the steps in the
Step 2
Verify your HA service configuration by following the steps in the
section.
Step 3
Save your configuration to flash memory, an external memory device, and/or a network location using the Exec mode
command
save configuration
System Administration Guide and the Command Line Interface Reference.

Modifying HA service to Support IPSec

Use the following example to modify an existing HA service to support IPSec on your system:
configure
context <ctxt_name>
ha-service <ha_svc_name>
isakmp aaa-context <aaa_ctxt_name>
isakmp peer-fa <fa_address> crypto-map <map_name> [ secret <preshared_secret> ]
end
Notes:
 <
ctxt_name
 <
ha_svc_name
 <
fa_address
 <
aaa_ctxt_name
IKE S Key and S Lifetime parameters.
 <
map_name
▄ Cisco ASR 5000 Series 3G Home NodeB Gateway Administration Guide
168
This section provides the minimum instruction set for configuring an HA service to support IPSec on
. For additional information on how to verify and save configuration files, refer to the
> is the system context in which the FA service is configured to support IPSec.
> is name of the HA service for which you are configuring IPSec.
> is IP address of the FA service to which HA service will communicate on IPSec.
> name of the context through which the HA service accesses the HAAA server to fetch the
> is name of the preconfigured ISAKMP or a manual crypot map.
Modifying HA service to Support IPSec
Verifying the HA Service Configuration with IPSec
IP Security
section
OL-25069-03

Advertisement

Table of Contents
loading

This manual is also suitable for:

Asr 5000 series

Table of Contents