Appendix B Site-to-Site VPN User Interface Reference

 

 

Site to Site VPN Policies

 

Table B-22

GRE Modes Page > DMVPN Policy (continued)

 

 

 

Element

 

Description

 

 

 

 

NHRP Parameters

 

 

 

 

 

 

Network ID

 

All Next Hop Resolution Protocol (NHRP) stations within one

 

 

logical Non-Broadcast Multi-Access (NBMA) network must be

 

 

configured with the same network identifier. Enter a globally

 

 

unique, 32-bit network identifier within the range of 1 to

 

 

4294967295.

 

 

 

 

Hold time

 

The time, in seconds, that routers will keep information provided in

 

 

authoritative NHRP responses. The cached IP-to-NBMA address

 

 

mapping entries are discarded after the hold time expires.

 

 

The default is 300 seconds.

 

 

 

Authentication

 

An authentication string that controls whether the source and

 

 

destination NHRP stations allow intercommunication. All routers

 

 

within the same network using NHRP must share the same

 

 

authentication string. The string can be up to eight characters long.

 

 

 

Save button

 

Saves your changes to the server but keeps them private.

 

 

Note To publish your changes, click the Submit button on the

 

 

toolbar.

 

 

 

Close button

 

Closes the Site-to-Site VPN window.

 

 

 

Help button

 

Opens help for this page.

 

 

 

 

Easy VPN IPSec Proposal Page

Use the Easy VPN IPSec Proposal page to create or edit the IPSec policy definitions for your Easy VPN server.

For more information, see Configuring an IPSec Proposal for Easy VPN, page 9-103.

Note This topic describes the IPSec Proposal page when the assigned technology is Easy VPN. For a description of the IPSec Proposal page when the assigned technology is IPSec, GRE, GRE Dynamic IP, or DMVPN, see IPSec Proposal Page, page B-39.

 

 

User Guide for Cisco Security Manager 3.0.1

 

 

 

 

 

 

OL-8214-02

 

 

B-69

 

 

 

Page 69
Image 69
3D Innovations 3.0.1 appendix Easy VPN IPSec Proposal