![Cisco 7401ASR Скачать руководство пользователя страница 89](http://html.mh-extra.com/html/cisco/7401asr/7401asr_installation-and-configuration-manual_66550089.webp)
C H A P T E R
4-1
Cisco 7401ASR Installation and Configuration Guide
OL-5419-01 B0
4
Configuring the VPN Acceleration Module
This chapter contains the information and procedures needed to configure the VPN Acceleration Module
(VAM) in Cisco 7401ASR routers. This chapter contains the following sections:
•
Overview, page 4-1
•
Configuration Tasks, page 4-1
Overview
The VAM provides encryption services for Cisco 7401ASR routers. You must configure IPSec on the
router for the VAM to provide encryption services.
Note
There are no interfaces to configure on the VAM.
This chapter contains basic configuration information for enabling encryption and IPSec tunneling
services. Refer to the
Cisco Enterprise VPN Configuration Guide
, the
VPN Acceleration Module
Installation and Configuration Guide
, the “
IP Security and Encryption
” part of the
Security
Configuration Guide
and the
Security Command Reference
for detailed configuration information on
IPSec, IKE, and CA.
Configuration Tasks
If the ENABLE LED is on on power up, the VAM is fully functional and does not require any
configuration commands. However, for the VAM to provide encryption services, you must complete the
steps in the following sections:
•
Configuring IKE, page 4-2
(required)
•
Configuring IPSec, page 4-3
(required)
Note
You can configure a static crypto map, create a dynamic crypto map, or add a dynamic crypto map into
a static crypto map. Refer to Chapter 3, “
Site-to-Site and Extranet VPN Business Scenarios,
” of the
online publication
Cisco IOS Enterprise VPN Configuration Guide
.
Optionally, you can configure Certification Authority (CA) interoperability (refer to the “Configuring
Certification Authority Interoperability” chapter in the
Security Configuration Guide
).