4-2
VPN Acceleration Module 2+ (VAM2+) Installation and Configuration Guide
OL-5979-03
Chapter 4 Configuring the SA-VAM2+
Configuration Tasks
Configuration Tasks
On power up if the enabled LED is on, the SA-VAM2+ is fully functional and does not require any
configuration commands. However, for the SA-VAM2+ to provide encryption services, you must
complete the steps in the following sections:
•
Using the EXEC Command Interpreter, page 4-2
(required)
•
Enabling SA-VAM2+, page 4-3
(required)
•
Configuring an IKE Policy, page 4-3
(required)
•
Configuring a Transform Set, page 4-4
(required)
•
Configuring IPSec, page 4-8
(required)
•
Configuring Compression, page 4-14
(optional)
•
IPSec Configuration Example, page 4-17
(optional)
•
Verifying IKE and IPSec Configurations, page 4-18
(optional)
Note
You can configure a static crypto map, create a dynamic crypto map, or add a dynamic crypto map into
a static crypto map. Refer to the online publication,
Configuring the VPN Acceleration Module
at
http://www.cisco.com/univercd/cc/td/doc/product/core/7100/7100pacn/vam1/vamconf.htm
.
Optionally, you can configure certification authority (CA) interoperability (refer to the “Configuring
Certification Authority Interoperability” chapter in the
Security Configuration Guide
).
Using the EXEC Command Interpreter
You modify the configuration of your router through the software command interpreter called the
EXEC
(also called enable mode). You must enter the privileged level of the EXEC command interpreter with
the
enable
command before you can use the
configure
command to configure a new interface or change
the existing configuration of an interface. The system prompts you for a password if one has been set.
The system prompt for the privileged level ends with a pound sign (#) instead of an angle bracket (>).
At the console terminal, use the following procedure to enter the privileged level:
Step 1
At the user-level EXEC prompt, enter the
enable
command. The EXEC prompts you for a
privileged-level password as follows:
Router>
enable
Password:
Step 2
Enter the password (the password is case sensitive). For security purposes, the password is not displayed.
When you enter the correct password, the system displays the privileged-level system prompt (#):
Router#
This completes the procedure for entering the privileged level of the EXEC command interpreter.