Casio ISA550WBUN3K9 manual Configuring IPsec Remote Access, IKE Policy

Models: ISA550WBUN3K9

1 479
Download 479 pages 49.64 Kb
Page 355
Image 355

VPN

8

 

Configuring IPsec Remote Access

 

 

 

 

 

Configuring IPsec Remote Access

The IPsec Remote Access feature introduces server support for the Cisco VPN Client (Release 4.x and 5.x) software clients and the Cisco VPN hardware clients. This feature allows remote users to establish the VPN tunnels to securely access the corporate network resources. Centrally managed IPsec policies are “pushed” to remote VPN clients by the VPN server, minimizing configuration by end users.

Figure 5 IPsec Remote Access with the Cisco VPN Client Software or a Cisco Device as a Cisco VPN Hardware Client

DNS Server

 

 

 

10.10.10.163

 

 

Personal Computer

 

 

 

 

ISA500

 

running Cisco VPN

 

 

Client software

 

as a Cisco IPSec

 

 

VPN Server

 

Internal

Inside

Outside

Internet

network

10.10.10.0

 

 

 

 

 

 

Personal Computer

 

 

 

running Cisco VPN

 

 

 

Client software

WINS Server

 

 

 

10.10.10.133

 

 

 

 

 

 

Cisco Device

 

 

 

as a Cisco VPN

 

 

 

hardware client

283054

NOTE When the security appliance is acting as an IPsec VPN server, the following IKE policy and transform set are used by default. The IKE policy and transform set used on the security appliance are unconfigurable.

Field

Setting

 

 

IKE Policy

Encryption = ESP_AES_256

 

Hash = SHA

 

Authentication = Pre-shared Key

 

D-H Group = Group 2

 

 

Cisco ISA500 Series Integrated Security Appliances Administration Guide

355

Page 355
Image 355
Casio ISA550WBUN3K9 manual Configuring IPsec Remote Access, IKE Policy