11-17
Cisco Router and Security Device Manager 2.5 User’s Guide
OL-4015-12
Chapter11 Site-to-Site VPN
Create Site to Site VPN

Tunnel Destination

Enter the IP address of the interface on the remote router at the other end of the
tunnel. This is the source interface from the point of view of the other end of the
tunnel.
Make sure that this address is reachable by using the ping command. The ping
command is available from the Tools menu. If the destination address cannot be
reached, the tunnel will not be created properly.

IP Address of the GRE tunnel

Enter the IP address of the tunnel. The IP addresses of b oth ends of the tunnel
must be in the same subnet. The tunnel is given a separate IP address so that it can
be a private address, if necessary.
IP Address
Enter the IP address of the tunnel in dotted decimal format. For more information,
see IP Addresses and Subnet Masks.
Subnet Mask
Enter the subnet mask for the tunnel address in dotted decimal format.
VPN Authentication Information
VPN peers use a pre-shared key to authenticate connections from each other. This
key must be the same on each side of the VPN connection.
Pre-Shared Key
Click this button if the VPN peers use a pre-shared key for authentication and then
enter the pre-shared key, and then reenter it for confirmation. Exchange the
pre-shared key with the administrator of the remote site through some secure and
convenient method, such as an encrypted e-mail message. Qu estion marks (?) and
spaces must not be used in the pre-shared key.