IPSec Configuration

Configuring the Cisco uBR900 Series Cable Access Routers 53

!
interface cable-modem0
ip address 188.186.1.14 255.255.0.0
no ip directed-broadcast
no ip route-cache
no ip mroute-cache
cable-modem downstream saved channel 699000000 27
bridge-group 59
bridge-group 59 spanning-disabled
!
ip classless
no ip http server
!
!
line con 0
transport input none
line vty 0 4
login
!
end
IPSec Configuration

Note Encryption/decryption is subject to export licensing controls. To support IPSec, the

Cisco uBR900 series must be configured in routing mode. the software images running at both the

headend and the subscriber end must support the feature set.

Note Careful address assignment on user equipment and policy routing at the headend is required.

The headend may or may not use tunnels to convey traffic back to the corporate gateway.

For detailed information on IP security, L2TP, and Firewall, refer to the Security Configuration

Guide.

Current configuration:
!
Last configuration change at 23:24:55 - Thu Dedc 16 1999
!
version 12.1
no service pad
service timestamps debug uptime
service timestamps log uptime
!
hostname Router
!
clock timezone - 0 6
ip subnet-zero
no ip domain-lookup
!
crypto isakmp policy 1
hash md5
authentication pre-share
lifetime 5000
crypto isakmp key 1111 address 30.1.1.1
crypto isakmp identity hostname
!