Chapter 6 Configuring a VPN Using Easy VPN and an IPsec Tunnel

Verifying Your Easy VPN Configuration

 

Command or Action

Purpose

Step 5

 

 

exit

Returns to global configuration mode.

 

Example:

 

 

Router(config-crypto-ezvpn)# exit

 

 

Router(config)#

 

Step 6

 

 

interface type number

Enters the interface configuration mode for the

 

 

interface to which you want the Cisco Easy VPN

 

Example:

remote configuration applied.

 

Router(config)# interface fastethernet 4

Note For routers with an ATM WAN interface,

 

Router(config-if)#

this command would be interface atm 0.

 

 

Step 7

 

 

crypto ipsec client ezvpn name [outside inside]

Assigns the Cisco Easy VPN remote configuration

 

 

to the WAN interface, causing the router to

 

Example:

automatically create the NAT or port address

 

Router(config-if)# crypto ipsec client

translation (PAT) and access list configuration

 

ezvpn ezvpnclient outside

needed for the VPN connection.

 

Router(config-if)#

 

Step 8

 

 

exit

Returns to global configuration mode.

 

Example:

 

 

Router(config-crypto-ezvpn)# exit

 

 

Router(config)#

 

 

 

 

Verifying Your Easy VPN Configuration

router# show crypto ipsec client ezvpn

Tunnel name :ezvpnclient

Inside interface list:vlan 1

Outside interface:fastethernet 4

Current State:IPSEC_ACTIVE

Last Event:SOCKET_UP

Address:8.0.0.5

Mask:255.255.255.255

Default Domain:cisco.com

Configuration Example

The following configuration example shows a portion of the configuration file for the VPN and IPsec tunnel described in this chapter.

!

aaanew-model

!

aaa authentication login rtr-remote local aaa authorization network rtr-remote local aaa session-id common

!

 

Cisco Secure Router 520 Series Software Configuration Guide

6-10

OL-14210-01

Page 74
Image 74
Cisco Systems 520 series manual Verifying Your Easy VPN Configuration, Crypto ipsec client ezvpn name outside inside