8-45
Cisco Router and Security Device Manager Version 2.2 Users Guide
OL-4015-08
Chapter8 Site-to-Site VPN
Create Site to Site VPN
What Do You Want to Do?
Traffic to Protect
This window lets you define the traffic that this VPN protects. The VPN can
protect traffic between specified subnets, or protect the traffic specified in an
IPSec rule that you select.

Protect All Traffic Between the Following Subnets

Use this option to specify a single source subnet (a sub net on the LAN) whose
outgoing traffic you want to encrypt, and one destination subnet supported by the
peer that you specified in the VPN Connection window.
All traffic flowing between other source and destination pairs will be sent
unencrypted.
Source
Enter the address of the subnet whose outgoing traffic you want to prote ct, and
specify the subnet mask. For more information, refer to Available Interface
Configurations.
If you want to: Do this:
Select a transform set for the VPN to
use.
Select a transform set, and click Next.
Add a transform set to the routers
configuration.
Click Add, and create the transform set in the Add Transform
Set window. Then click Next to continue VPN configuration.
Edit an existing transform set. Select a transform set, and click Edit. Then, edit the
transform set in the Edit Transform Set window. After editing
the transform set, click Next to continue VPN configuration.
SDM Default transform sets are read only and cannot be
edited.
Associate additional transform sets
with this VPN.
Select one transform set in this window, and complete the
VPN wizard. Then, associate other transform sets to the VPN
in the Edit tab.