
7-7
Cisco 850 Series and Cisco 870 Series Access Routers Software Configuration Guide
OL-5332-01
Chapter 7 Configuring VPNs Using an IPSec Tunnel and Generic Routing Encapsulation
Configure a VPN
Apply the Crypto Map to the Physical Interface
The crypto maps must be applied to each interface through which IPSec traffic flows. Applying the
crypto map to the physical interface instructs the router to evaluate all the traffic against the security
associations database. With the default configurations, the router provides secure connectivity by
encrypting the traffic sent between remote sites. However, the public interface still allows the rest of the
traffic to pass and provides connectivity to the Internet.
Perform these steps to apply a crypto map to an interface, beginning in global configuration mode:
Step 3
reverse-route
Example:
Router(config-crypto-map)#
reverse-route
Router(config-crypto-map)#
Creates source proxy information for the crypto
map entry.
See the
Cisco IOS Security Command Reference
for details.
Step 4
exit
Example:
Router(config-crypto-map)#
exit
Router(config)#
Enters global configuration mode.
Step 5
crypto map
map-name seq-num
[
ipsec-isakmp
]
[
dynamic
dynamic-map-name
] [
discover
]
[
profile
profile-name
]
Example:
Router(config)#
crypto map static-map 1
ipsec-isakmp dynamic dynmap
Router(config)#
Creates a crypto map profile.
Command or Action
Purpose
Command or Action
Purpose
Step 1
interface
type number
Example:
Router(config)#
interface
fastethernet 4
Router(config-if)#
Enters interface configuration mode for the
interface to which you want to apply the crypto
map.
Summary of Contents for 850 Series
Page 15: ...P A R T 1 Getting Started ...
Page 16: ......
Page 33: ...P A R T 2 Configuring Your Router for Ethernet and DSL Access ...
Page 34: ......
Page 111: ...P A R T 3 Configuring Additional Features and Troubleshooting ...
Page 112: ......
Page 155: ...P A R T 4 Reference Information ...
Page 156: ......