data:image/s3,"s3://crabby-images/bb3c9/bb3c9246535ea4458ce9e08feb7bc50ca57ba49b" alt="Huawei AR1200 Series Configuration Manual Download Page 345"
[Huawei-ipsec-profile-profile1]
quit
Step 7
Apply the IPSec profiles to the interfaces of RouterA and RouterB.
# Apply the IPSec profile to the interface of RouterA.
[Huawei]
interface tunnel 0/0/0
[Huawei-Tunnel0/0/0]
ip address 192.168.1.1 24
[Huawei-Tunnel0/0/0]
tunnel-protocol gre
[Huawei-Tunnel0/0/0]
source 202.138.163.1
[Huawei-Tunnel0/0/0]
destination 202.138.162.1
[Huawei-Tunnel0/0/0]
ipsec profile profile1
[Huawei-Tunnel0/0/0]
quit
# Apply the IPSec profile to the interface of RouterB.
[Huawei]
interface tunnel 0/0/0
[Huawei-Tunnel0/0/0]
ip address 192.168.1.2 24
[Huawei-Tunnel0/0/0]
tunnel-protocol gre
[Huawei-Tunnel0/0/0]
source 202.138.162.1
[Huawei-Tunnel0/0/0]
destination 202.138.163.1
[Huawei-Tunnel0/0/0]
ipsec profile profile2
Step 8
Verify the configuration.
Run the
display ipsec profile
command on RouterA and RouterB to view the configurations of
the IPSec profiles. Take the display on RouterA as an example.
[Huawei]
display ipsec profile
===========================================
IPSec profile : profile1
Using interface: Tunnel0/0/0
===========================================
IPSec Profile Name :profile1
Peer Name :spub
PFS Group :0 (0:Disable 1:Group1 2:Group2 5:Group5 14:Group14)
SecondsFlag :0 (0:Global 1:Local)
SA Life Time Seconds :3600
KilobytesFlag :0 (0:Global 1:Local)
SA Life Kilobytes :1843200
Number of IPSec Proposals :1
IPSec Proposals Name :tran1
----End
Configuration Files
l
Configuration file of RouterA
#
ipsec proposal tran1
transform ah-esp
ah authentication-algorithm sha1
esp authentication-algorithm sha1
esp encryption-algorithm 3des
#
ip route-static 10.1.2.0 255.255.255.0 202.138.163.2
#
ike proposal 1
dh group5
authentication-algorithm aes_xcbc_mac_96
prf aes_xcbc_128
#
ike peer spub v2
pre-shared-key huawei
ike-proposal 1
#
Huawei AR1200 Series Enterprise Routers
Configuration Guide - VPN
5 IPSec Configuration
Issue 01 (2012-04-20)
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
334