Configuring VPN
Cisco VPN Server
Cisco SRP500 Series Services Ready Platforms Administration Guide (SRP520 Models)
192
7
Cisco VPN Server Settings
Group
Enable
Click
Enable
to activate the VPN server. The default is
Disable.
NOTE
Enabling the VPN Server deactivates any site-to-site
VPN tunnels that were defined.
Identity
Group Name
Enter the Cisco VPN
Group Name
that will be used as
an identifier for the VPN server. This name must match
the group name specified in the VPN Client profile. The
length can contain up to 32 characters and is case
sensitive.
Password
Enter the Cisco VPN Group
Password
. This password
must match the group password specified in the VPN
Client profile. The length can contain up to 32 characters
and is case sensitive.
IKE Phase 1
Aggressive Mode
Aggressive mode is applied by default and cannot be
changed. This mode is used for negotiating phase one
ISAKMP Security Associations (SAs) when using
preshared keys for authentication.
ESP Algorithm
Enter an encryption algorithm for the ISAKMP SA.
Choices are
AES
,
DES
, and
3DES
. The default is AES.
AH Algorithm
Hash algorithm for the ISAKMP SA. Choices are
MD5
and
SHA1
. The default is MD5.
Auth Method
Method used to authenticate the remote user. Choices
are
PSK
or
PSK+XAUTH
. If PSK is selected, the client is
authenticated if it specifies the correct group name and
password. If PSK+XAUTH is selected, an additional
username and password is required.
DH Group
Diffie-Hellman (DH) group used to set the strength of the
algorithm in bits. The only available option is
2 [modp 1024].