Cisco SRP521W-K9-G1 Administration Guide - Page 192

Group, Enable, Identity, Group Name, Password, IKE Phase 1, PSK+XAUTH, Configuring VPN

Page 192 highlights

Configuring VPN Cisco VPN Server 7 Cisco VPN Server Settings Group Enable Click Enable to activate the VPN server. The default is Disable. NOTE Enabling the VPN Server deactivates any site-to-site VPN tunnels that were defined. Identity Group Name Enter the Cisco VPN Group Name that will be used as an identifier for the VPN server. This name must match the group name specified in the VPN Client profile. The length can contain up to 32 characters and is case sensitive. Password Enter the Cisco VPN Group Password. This password must match the group password specified in the VPN Client profile. The length can contain up to 32 characters and is case sensitive. IKE Phase 1 Aggressive Mode Aggressive mode is applied by default and cannot be changed. This mode is used for negotiating phase one ISAKMP Security Associations (SAs) when using preshared keys for authentication. ESP Algorithm Enter an encryption algorithm for the ISAKMP SA. Choices are AES, DES, and 3DES. The default is AES. AH Algorithm Hash algorithm for the ISAKMP SA. Choices are MD5 and SHA1. The default is MD5. Auth Method Method used to authenticate the remote user. Choices are PSK or PSK+XAUTH. If PSK is selected, the client is authenticated if it specifies the correct group name and password. If PSK+XAUTH is selected, an additional username and password is required. DH Group Diffie-Hellman (DH) group used to set the strength of the algorithm in bits. The only available option is 2 [modp 1024]. Cisco SRP500 Series Services Ready Platforms Administration Guide (SRP520 Models) 192

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229

Configuring VPN
Cisco VPN Server
Cisco SRP500 Series Services Ready Platforms Administration Guide (SRP520 Models)
192
7
Cisco VPN Server Settings
Group
Enable
Click
Enable
to activate the VPN server. The default is
Disable.
NOTE
Enabling the VPN Server deactivates any site-to-site
VPN tunnels that were defined.
Identity
Group Name
Enter the Cisco VPN
Group Name
that will be used as
an identifier for the VPN server. This name must match
the group name specified in the VPN Client profile. The
length can contain up to 32 characters and is case
sensitive.
Password
Enter the Cisco VPN Group
Password
. This password
must match the group password specified in the VPN
Client profile. The length can contain up to 32 characters
and is case sensitive.
IKE Phase 1
Aggressive Mode
Aggressive mode is applied by default and cannot be
changed. This mode is used for negotiating phase one
ISAKMP Security Associations (SAs) when using
preshared keys for authentication.
ESP Algorithm
Enter an encryption algorithm for the ISAKMP SA.
Choices are
AES
,
DES
, and
3DES
. The default is AES.
AH Algorithm
Hash algorithm for the ISAKMP SA. Choices are
MD5
and
SHA1
. The default is MD5.
Auth Method
Method used to authenticate the remote user. Choices
are
PSK
or
PSK+XAUTH
. If PSK is selected, the client is
authenticated if it specifies the correct group name and
password. If PSK+XAUTH is selected, an additional
username and password is required.
DH Group
Diffie-Hellman (DH) group used to set the strength of the
algorithm in bits. The only available option is
2 [modp 1024].