Prepare the Device for Operation
Chapter 3. Configuration
21
These are some possible configurations and the associated command:
Examples
z
Enable auto-negotiation and flow control on the remote port:
config-ifRemote>
auto enable
z
Disable auto-negotiation and flow control on the remote port, exit
configuration mode, save the configuration, and then reboot the HA4000.
config-ifRemote>
auto disable disable
config-ifRemote>
exit
config>
exit
admin>
copy system:running nvram:config
admin>
reboot
Assign IKE Default Gateway
When both of the conditions listed below are true, configure the default gateway
on the HA4000 gateway’s remote port:
z
Negotiated IPSec (IKE) policies will be used.
z
The HA4000 gateways (IPSec peers) are in a routed network.
Where the gateways are deployed—on a single subnet or in a routed network—
determines how to configure the IKE default gateway.
Remote Ports on the Same Subnet
In Figure 3-2, the remote ports of the two HA4000 gateways are on the same
subnet, with no routers between them. HA4000 #1, which is the IKE negotiation
initiator, is able to send packets directly to HA4000 #2 to start the IKE
negotiation. This scenario is assumed by default; no configuration is required.
Auto-negotiation
Flow Control
Command
enabled
value negotiated
auto enable
disabled
value negotiated
auto disable enable
disabled
disabled
auto disable disable