Configuration Guide
7. IPSec Tunneling
Version 7.2
33
Security Setup
Use the
show data crypto status
command to view the IPSec status. The following is
the output from the command on the device on the branch site:
# show data crypto status
IKE peer [180.1.100.21]
map [MAP1-1]
status [connected]
Interface(s): [GigabitEthernet 0/0][2][7][eth1.4010]
Use the
show data crypto status
command to view the IPSec status. The following is
the output from the command on the device on the Corporate HQ site:
MSBR-2# show data crypto status
IKE peer [180.1.100.20]
map [MAP1-1]
status [connected]
Interface(s): [GigabitEthernet 0/0][2][0][eth1]
If configuration requires two subnets to be connected using two IPSec tunnels, then in
addition to the previous primary configuration, the following configuration needs to be added
to the device on the branch site:
access-list ipsec permit ip 192.168.2.0 0.0.0.255 10.0.2.0
0.0.0.255
crypto map MAP1 2 ipsec-isakmp
set peer 180.1.100.21
set transform-set crypto_set1
set security-association lifetime seconds 28000
match address ipsec
exit
The following configuration needs to be added to the device on the Corporate HQ site:
access-list ipsec permit ip 10.0.2.0 0.0.0.255 192.168.2.0
0.0.0.255
crypto map MAP1 2 ipsec-isakmp
set peer 180.1.100.20
set transform-set crypto_set1
set security-association lifetime seconds 28000
match address ipsec
exit
The configuration additions above assume that the subnets 192.168.2.0/24 and 10.0.2.0/24
need to be added.
Содержание Mediant 500L MSBR
Страница 2: ......
Страница 4: ...Mediant MSBRs 4 Document LTRT 31828 Security Setup This page is intentionally left blank...
Страница 8: ...Mediant MSBRs 8 Document LTRT 31828 Security Setup This page is intentionally left blank...
Страница 12: ...Mediant MSBRs 12 Document LTRT 31828 Security Setup This page is intentionally left blank...
Страница 16: ...Mediant MSBRs 16 Document LTRT 31828 Security Setup This page is intentionally left blank...
Страница 18: ...Mediant MSBRs 18 Document LTRT 31828 Security Setup This page is intentionally left blank...
Страница 24: ...Mediant MSBRs 24 Document LTRT 31828 Security Setup This page is intentionally left blank...
Страница 28: ...Mediant MSBRs 28 Document LTRT 31828 Security Setup This page is intentionally left blank...
Страница 54: ...Mediant MSBRs 54 Document LTRT 31828 Security Setup This page is intentionally left blank...
Страница 62: ...Mediant MSBRs 62 Document LTRT 31828 Security Setup This page is intentionally left blank...
Страница 72: ...Mediant MSBRs 72 Document LTRT 31828 Security Setup This page is intentionally left blank...