Cisco Systems OL-24124-01 manual 17-7, Hidekeys

Page 7

Chapter 17 Configuring Virtual Private Networks

Sample IOS configuration summary

hidekeys

username admin privilege 15 password 0 vpnios username test privilege 15 password 0 adgjm username usr+ privilege 15 password 0 adgjm username usr# privilege 15 password 0 adgjm username test2 privilege 15 password 0 adg+jm

username CP-7962G-SEP001B0CDB38FE privilege 15 password 0 adgjm

!

redundancy

!

!

!--- Configure interface. Generally one interface to internal network and one outside interface GigabitEthernet0/0

description "outside interface"

ip address 10.89.79.140 255.255.255.240 duplex auto

speed auto

!

interface GigabitEthernet0/1 description "Inside Interface" ip address dhcp

duplex auto speed auto

!

!--- Define IP local address pool

ip local pool webvpn-pool 10.8.40.200 10.8.40.225 ip default-gateway 10.89.79.129

ip forward-protocol nd ip http server

ip http authentication local ip http secure-server

ip http timeout-policy idle 60 life 86400 requests 10000

!

!

!--- Define static IP routes

ip route 0.0.0.0 0.0.0.0 10.89.79.129

ip route 10.89.0.0 255.255.0.0 10.8.40.1

!

no logging trap

access-list 23 permit 10.10.10.0 0.0.0.7

!

control-plane

!

line con 0 exec-timeout 15 0

line aux 0

!telnet access line vty 0 4

exec-timeout 30 0 privilege level 15 password vpnios transport input telnet

line vty 5 15 access-class 23 in privilege level 15 transport input all

!

exception data-corruption buffer truncate scheduler allocate 20000 1000

!

!webvpn gateway configuration

webvpn gateway VPN_RCDN_IOS hostname vpnios

 

 

Cisco Unified Communications Manager Security Guide

 

 

 

 

 

 

OL-24124-01

 

 

17-7

 

 

 

 

 

Image 7
Contents Supported Devices Configuring the VPN Feature17-1 17-2 Configuration StepsConfiguring IOS for VPN client on IP phone IOS configuration requirements17-3 17-4 Routerconfig# ip route destip mask gatewayip17-5 Sample IOS configuration summaryAaa new-model 17-6Hidekeys 17-717-8 Configuring ASA for VPN client on IP phone ASA configuration requirements17-9 17-10 17-11 Sample ASA configuration summarySame-security-traffic permit inter-interface 17-1217-13 Svc rekey time 17-1417-15 17-16