Chapter 10 Sample Configuration

BETA DRAFT - CISCO CONFIDENTIAL

duplex auto speed auto

!

interface FastEthernet1 no ip address duplex auto

speed auto

!

crypto isakmp policy 1 encryption 3des authentication pre-share group 2

lifetime 480

!

crypto isakmp client configuration group rtr-remote key secret-password

dns 10.50.10.1 10.60.10.1 domain company.com

pool dynpool

!

crypto ipsec transform-set vpn1 esp-3des esp-sha-hmac

!

crypto ipsec security-association lifetime seconds 86400

!

crypto dynamic-map dynmap 1 set transform-set vpn1 reverse-route

!

crypto map static-map 1 ipsec-isakmp dynamic dynmap crypto map dynmap isakmp authorization list rtr-remote crypto map dynmap client configuration address respond

crypto ipsec client ezvpn ezvpnclient connect auto

group 2 key secret-password mode client

peer 192.168.100.1

!

interface Dot11Radio0 no ip address

!

broadcast-key vlan 1 change 45

!

encryption vlan 1 mode ciphers tkip

!

ssid cisco vlan 1 authentication open

authentication network-eap eap_methods authentication key-management wpa optional

!

ssid ciscowep vlan 2 authentication open

!

ssid ciscowpa vlan 3 authentication open

!

speed basic-1.0 basic-2.0 basic-5.5 6.0 9.0 basic-11.0 12.0 18.0 24.0 36.0 48.0 54.0 rts threshold 2312

power local cck 50 power local ofdm 30 channel 2462

Cisco 1800 Series Integrated Services Routers (Fixed) Software Configuration Guide

 

OL-6426-02

10-3

 

 

 

Page 113
Image 113
Cisco Systems OL-6426-02 manual 10-3