Configuring VPN
Cisco VPN Server
Cisco SRP500 Series Services Ready Platforms Administration Guide (SRP520 Models)
193
7
IKE Phase 2P
PFS Group
Diffie-Hellman group options for Perfect Forward
Secrecy (PFS) in phase 2. Choices are:
1 [modp 768]
,
2
[modp 1024]
,
5 [modp 1536]
,
14 [modp 2048]
, or
15 [modp 3072]
.
SA Lifetime
Defines how long an IPSec SA (security association) will
be used. The default is 30 minutes.
Mode Configuration
IP Pool
Starting IP Address
: Starting IP address of the range of
addresses that are assigned to the remote client. This
range must not be in the same subnet as any VLAN.
Subnet Mask
: Mask for the address range assigned to
remote clients. The defined mask must be large enough
to accommodate the maximum number of connections
supported by your SRP.
DNS1
Primary DNS server to be used by remote clients.
DNS2
Secondary DNS server to be used by remote clients.
WINS1
Primary WINS server to be used by remote clients.
WINS2
Secondary WINS server to be used by remote clients
Banner
Message displayed to the remote user after they log on.
The banner allows up to 500 printable ASCII characters
on 1 line.
Cisco VPN Server Settings