Cisco Systems OL-6426-02 manual Configure Group Policy Information, Group 1 2, Lifetime seconds

Models: OL-6426-02

1 196
Download 196 pages 47.1 Kb
Page 88
Image 88

Chapter 7 Configuring VPNs Using an IPSec Tunnel and Generic Routing Encapsulation

Configure a VPN

BETA DRAFT - CISCO CONFIDENTIAL

 

Command or Action

Purpose

Step 5

 

 

group {1 2 5}

Specifies the Diffie-Hellman group to be used in

 

 

the IKE policy.

 

Example:

 

 

Router(config-isakmp)# group 2

 

 

Router(config-isakmp)#

 

Step 6

 

 

lifetime seconds

Specifies the lifetime, 60–86400 seconds, for an

 

 

IKE security association (SA).

 

Example:

 

 

Router(config-isakmp)# lifetime 480

 

 

Router(config-isakmp)#

 

Step 7

 

 

exit

Exits IKE policy configuration mode, and enters

 

 

global configuration mode.

 

Example:

 

 

Router(config-isakmp)# exit

 

 

Router(config)#

 

 

 

 

Configure Group Policy Information

Perform these steps to configure the group policy, beginning in global configuration mode:

 

Command or Action

Purpose

Step 1

 

 

crypto isakmp client configuration group

Creates an IKE policy group that contains

 

{group-name default}

attributes to be downloaded to the remote client.

 

Example:

Also enters Internet Security Association Key

 

Management Protocol (ISAKMP) policy

 

 

 

Router(config)# crypto isakmp client

configuration mode.

 

configuration group rtr-remote

 

 

Router(config-isakmp-group)#

 

Step 2

 

 

key name

Specifies the IKE pre-shared key for the group

 

 

policy.

 

Example:

 

 

Router(config-isakmp-group)# key

 

 

secret-password

 

 

Router(config-isakmp-group)#

 

Step 3

 

 

dns primary-server

Specifies the primary Domain Name Service

 

 

(DNS) server for the group.

 

Example:

Note You may also want to specify Windows

 

 

 

Router(config-isakmp-group)# dns 10.50.10.1

Internet Naming Service (WINS) servers

 

Router(config-isakmp-group)#

for the group by using the wins command.

 

 

 

 

 

Cisco 1800 Series Integrated Services Routers (Fixed) Software Configuration Guide

7-4

OL-6426-02

 

 

Page 88
Image 88
Cisco Systems OL-6426-02 manual Configure Group Policy Information, Group 1 2, Lifetime seconds