Differences between revisions 1 and 2
Revision 1 as of 2009-10-18 08:28:50
Size: 226
Editor: PieterSmit
Comment: Create first link
Revision 2 as of 2014-07-01 12:06:04
Size: 764
Editor: PieterSmit
Comment: Sample config
Deletions are marked like this. Additions are marked like this.
Line 9: Line 9:
== Sample Cisco Config ==
crypto isakmp policy 10
   hash sha
   authentication pre-share
   crypto isakmp key vpnkey address 10.0.0.2
!!# Phase Two #!!
crypto ipsec transform-set vpnset esp-aes esp-sha-hmac
   exit
crypto map vpnset 10 ipsec-isakmp
   set peer 10.0.0.2
   set transform-set vpnset
   match address 100
!!#Apply to outside int #!!
int ??
    !ip address 10.0.0.1
    crypto map vpnset
access-list 100 permit ip 10.10.10.0 0.0.0.255 10.20.0.0 0.0.0.255
ip route 0.0.0.0 0.0.0.0 192.168.16.1
!

IPSEC

IPSEC encryption related links.

Sample Cisco Config

crypto isakmp policy 10

  • hash sha authentication pre-share crypto isakmp key vpnkey address 10.0.0.2

!!# Phase Two #!! crypto ipsec transform-set vpnset esp-aes esp-sha-hmac

  • exit

crypto map vpnset 10 ipsec-isakmp

  • set peer 10.0.0.2 set transform-set vpnset match address 100

!!#Apply to outside int #!! int ??

  • !ip address 10.0.0.1 crypto map vpnset

access-list 100 permit ip 10.10.10.0 0.0.0.255 10.20.0.0 0.0.0.255 ip route 0.0.0.0 0.0.0.0 192.168.16.1 !

...


CategorySecurity

IpSec (last edited 2017-11-08 19:17:26 by PieterSmit)