Chapter9 Easy VPN Remote
Edit Easy VPN Remote
9-92
Cisco Router and Security Device Manager Version 2.2 Users Guide
OL-4015-08
The Cisco Easy VPN Remote feature implements The Cisco Unity Client
protocol, which allows most VPN parameters to be defined on a VPN remot e
access server. This server can be a dedicated VPN device, such as a VPN 3000
concentrator or a Cisco PIX Firewall, or it can be a CiscoIOS router that supports
the Cisco Unity Client protocol.
Name
Enter a name for the Easy VPN remote configuration.
Mode
ClientChoose Client if you want the PCs and other devices on the routers
inside networks to form a private network with private IP addresses. Network
Address Translation (NAT) and Port Address Translation (PAT) will be used.
Devices outside the LAN will not be able to ping devices on the LAN or to reach
them directly.
Network ExtensionChoose Network Extension if you want the devices
connected to the inside interfaces to have IP addresses that are routable and
reachable by the destination network. The devices at both ends of the connection
will form one logical network. PAT will be automatically disabled, allowing the
PCs and hosts at both ends of the connection to have direct access to one another.
Consult the administrator of the Easy VPN server or concentrator before you
choose this setting.
Tunnel Control
Choose either Auto or Manual.
With the Manual setting, you must click the Connect button in the VPN
Connections window to establish the tunnel, but you will have full manual control
over the tunnel in the VPN Connections window. The Connect and Disconnect
buttons are enabled whenever you choose a VPN connection with the Manu al
tunnel control setting.
With the Auto setting, the VPN tunnel is established automatically when the Easy
VPN configuration is delivered to the router configuration file. However, you will
not be able to control the tunnel manually in the VPN Connections w indow. The
Connect and Disconnect buttons are disabled when this Easy VPN connection is
chosen.