Cisco Systems OL-6426-02 manual Configure Group Policy Information, Group-name default, Key name

Models: OL-6426-02

1 196
Download 196 pages 47.1 Kb
Page 76
Image 76

Chapter 6 Configuring a VPN Using Easy VPN and an IPSec Tunnel

Configure Group Policy Information

BETA DRAFT - CISCO CONFIDENTIAL

 

Command or Action

Purpose

Step 6

 

 

lifetime seconds

Specifies the lifetime, 60–86400 seconds, for an

 

 

IKE security association (SA).

 

Example:

 

 

Router(config-isakmp)# lifetime 480

 

 

Router(config-isakmp)#

 

Step 7

 

 

exit

Exits IKE policy configuration mode, and enters

 

 

global configuration mode.

 

Example:

 

 

Router(config-isakmp)# exit

 

 

Router(config)#

 

 

 

 

Configure Group Policy Information

Perform these steps to configure the group policy, beginning in global configuration mode:

 

Command or Action

Purpose

Step 1

 

 

crypto isakmp client configuration group

Creates an IKE policy group containing attributes

 

{group-name default}

to be downloaded to the remote client.

 

 

Also enters the Internet Security Association Key

 

 

and Management Protocol (ISAKMP) group

 

Example:

policy configuration mode.

 

Router(config)# crypto isakmp client

 

 

configuration group rtr-remote

 

 

Router(config-isakmp-group)#

 

Step 2

 

 

key name

Specifies the IKE pre-shared key for the group

 

 

policy.

 

Example:

 

 

Router(config-isakmp-group)# key

 

 

secret-password

 

 

Router(config-isakmp-group)#

 

Step 3

 

 

dns primary-server

Specifies the primary Domain Name System

 

 

(DNS) server for the group.

 

Example:

Note You may also want to specify Windows

 

 

 

Router(config-isakmp-group)# dns 10.50.10.1

Internet Naming Service (WINS) servers

 

Router(config-isakmp-group)#

for the group by using the wins command.

 

 

Step 4

 

 

domain name

Specifies group domain membership.

 

Example:

 

 

Router(config-isakmp-group)# domain

 

 

company.com

 

 

Router(config-isakmp-group)#

 

 

 

 

Cisco 1800 Series Integrated Services Routers (Fixed) Software Configuration Guide

6-4

OL-6426-02

 

 

Page 76
Image 76
Cisco Systems OL-6426-02 Configure Group Policy Information, Crypto isakmp client configuration group, Group-name default