Cisco 520-T1 Software Guide - Page 73

Example:, Create an Easy VPN Remote Configuration

Page 73 highlights

Chapter 6 Configuring a VPN Using Easy VPN and an IPsec Tunnel Create an Easy VPN Remote Configuration Step 2 Command or Action crypto map map-name Example: Router(config-if)# crypto map static-map Router(config-if)# Step 3 exit Example: Router(config-crypto-map)# exit Router(config)# Purpose Applies the crypto map to the interface. See the Cisco IOS Security Command Reference for more detail about this command. Returns to global configuration mode. Create an Easy VPN Remote Configuration The router acting as the IPsec remote router must create an Easy VPN remote configuration and assign it to the outgoing interface. Perform these steps to create the remote configuration, beginning in global configuration mode: Step 1 Step 2 Step 3 Step 4 Command or Action crypto ipsec client ezvpn name Example: Router(config)# crypto ipsec client ezvpn ezvpnclient Router(config-crypto-ezvpn)# group group-name key group-key Example: Router(config-crypto-ezvpn)# group ezvpnclient key secret-password Router(config-crypto-ezvpn)# peer {ipaddress | hostname} Example: Router(config-crypto-ezvpn)# peer 192.168.100.1 Router(config-crypto-ezvpn)# mode {client | network-extension | network extension plus} Example: Router(config-crypto-ezvpn)# mode client Router(config-crypto-ezvpn)# Purpose Creates a Cisco Easy VPN remote configuration, and enters Cisco Easy VPN remote configuration mode. Specifies the IPsec group and IPsec key value for the VPN connection. Specifies the peer IP address or hostname for the VPN connection. Note A hostname can be specified only when the router has a DNS server available for hostname resolution. Specifies the VPN mode of operation. OL-14210-01 Cisco Secure Router 520 Series Software Configuration Guide 6-9

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162

6-9
Cisco Secure Router 520 Series Software Configuration Guide
OL-14210-01
Chapter 6
Configuring a VPN Using Easy VPN and an IPsec Tunnel
Create an Easy VPN Remote Configuration
Create an Easy VPN Remote Configuration
The router acting as the IPsec remote router must create an Easy VPN remote configuration and assign
it to the outgoing interface.
Perform these steps to create the remote configuration, beginning in global configuration mode:
Step 2
crypto map
map-name
Example:
Router(config-if)#
crypto map static-map
Router(config-if)#
Applies the crypto map to the interface.
See the
Cisco IOS Security Command Reference
for more detail about this command.
Step 3
exit
Example:
Router(config-crypto-map)#
exit
Router(config)#
Returns to global configuration mode.
Command or Action
Purpose
Command or Action
Purpose
Step 1
crypto ipsec client ezvpn
name
Example:
Router(config)#
crypto ipsec client ezvpn
ezvpnclient
Router(config-crypto-ezvpn)#
Creates a Cisco Easy VPN remote configuration,
and enters Cisco Easy VPN remote configuration
mode.
Step 2
group
group-name
key
group-key
Example:
Router(config-crypto-ezvpn)#
group
ezvpnclient key secret-password
Router(config-crypto-ezvpn)#
Specifies the IPsec group and IPsec key value for
the VPN connection.
Step 3
peer
{
ipaddress | hostname
}
Example:
Router(config-crypto-ezvpn)#
peer
192.168.100.1
Router(config-crypto-ezvpn)#
Specifies the peer IP address or hostname for the
VPN connection.
Note
A hostname can be specified only when
the router has a DNS server available for
hostname resolution.
Step 4
mode
{
client
|
network-extension
|
network
extension plus
}
Example:
Router(config-crypto-ezvpn)#
mode client
Router(config-crypto-ezvpn)#
Specifies the VPN mode of operation.