IPSec Configuration

!

interface cable-modem0

ip address 188.186.1.14 255.255.0.0 no ip directed-broadcast

no ip route-cache no ip mroute-cache

cable-modem downstream saved channel 699000000 27 bridge-group 59

bridge-group 59 spanning-disabled

!

ip classless

no ip http server

!

!

line con 0 transport input none

line vty 0 4 login

!

end

IPSec Configuration

Note Encryption/decryption is subject to export licensing controls. To support IPSec, the

Cisco uBR900 series must be configured in routing mode. the software images running at both the headend and the subscriber end must support the feature set.

Note Careful address assignment on user equipment and policy routing at the headend is required. The headend may or may not use tunnels to convey traffic back to the corporate gateway.

For detailed information on IP security, L2TP, and Firewall, refer to the Security Configuration

Guide.

Current configuration:

!

Last configuration change at 23:24:55 - Thu Dedc 16 1999

!

version 12.1 no service pad

service timestamps debug uptime service timestamps log uptime

!

hostname Router

!

clock timezone - 0 6 ip subnet-zero

no ip domain-lookup

!

crypto isakmp policy 1 hash md5 authentication pre-share lifetime 5000

crypto isakmp key 1111 address 30.1.1.1 crypto isakmp identity hostname

!

Configuring the Cisco uBR900 Series Cable Access Routers 53

Page 53
Image 53
Cisco Systems UBR900 specifications IPSec Configuration