B-69
User Guide for CiscoSecurity Manager3.0.1
OL-8214-02
AppendixB Site-to-Site VPN User Interface Reference Site to Site VPN Policies
Easy VPN IPSec Proposal Page
Use the Easy VPN IPSec Proposal page to create or edit the IPSec policy
definitions for your Easy VPN server.
For more information, see Configuring an IPSec Proposal for EasyVPN,
page 9-103.
Note This topic describes the IPSec Proposal page when the assigned technology is
Easy VPN. For a description of the IPSec Proposal page when the assigned
technology is IPSec, GRE, GRE Dynamic IP, or DMVPN, seeIPSec Proposal
Page, page B-39.
NHRP Parameters
Network ID All Next Hop Resolution Protocol (NHRP) stations within one
logical Non-Broadcast Multi-Access (NBMA) network must be
configured with the same network identifier. Enter a globally
unique, 32-bit network identifier within the range of 1 to
4294967295.
Hold time The time, in seconds,that routerswill keep informationprovided in
authoritative NHRP responses. The cached IP-to-NBMA address
mapping entries are discarded after the hold time expires.
The default is 300 seconds.
Authentication An authentication string that controls whether the source and
destination NHRP stations allow intercommunication. All routers
within the same network using NHRP must share the same
authentication string. The string can be up to eight characters long.
Save button Saves your changes to the server but keeps them private.
Note To publish your changes, click theSubmit button on the
toolbar.
Close button Closes the Site-to-Site VPN window.
Help button Opens help for this page.
TableB-22 GRE Modes Page> DMVPN Policy (continued)
Element Description