Configuring Subscriber-End Broadband Access Router Features

Subscriber-End Broadband Access Router Configuration Examples

application SGCPAPP port 1

!

process-max-time 200

!

interface Ethernet0

ip address 188.186.1.14 255.255.0.0 no ip directed-broadcast

no ip route-cache no ip mroute-cache bridge-group 59

bridge-group 59 spanning-disabled

!

interface cable-modem0

ip address 188.186.1.14 255.255.0.0 no ip directed-broadcast

no ip route-cache no ip mroute-cache

cable-modem downstream saved channel 699000000 27 bridge-group 59

bridge-group 59 spanning-disabled

!

ip classless

no ip http server

!

!

line con 0 transport input none

line vty 0 4 login

!

end

IPSec Configuration Example

Note Encryption/decryption is subject to export licensing controls. To support IPSec, the Cisco uBR900 series must be configured in routing mode. The software images running at both the headend and the subscriber end must support the feature set.

Note Careful address assignment on user equipment and policy routing at the headend is required. The headend may or may not use tunnels to convey traffic back to the corporate gateway.

For detailed information on IP security, L2TP, and firewalls, refer to the Cisco IOS Security

Configuration Guide.

Current configuration:

!

Last configuration change at 23:24:55 - Thu Dedc 16 1999

!

version 12.1 no service pad

service timestamps debug uptime service timestamps log uptime

!

Cisco IOS Multiservice Applications Configuration Guide

MC-657

Page 51
Image 51
Cisco Systems MC-607 manual IPSec Configuration Example, MC-657