5.4.2 VPN via Dialer Interface rtr2

XSR-1805-2#show running-config

!!

!Version 6.0.0.9, Built Dec 12 2003, 14:56:30

hostname XSR-1805-2

interface bri 0/2/0

isdn switch-type basic-net3 no shutdown

dialer pool-member 1 priority 0

access-list 102 permit

ip

10.10.10.0 0.0.0.255 20.20.20.0 0.0.0.255

access-list 102

permit

ip

any host 1.1.1.1

access-list 130

permit

ip

10.10.10.0 0.0.0.255 20.20.20.0 0.0.0.255

!

 

 

 

crypto isakmp proposal

ISDN

 

authentication pre-share

 

!

crypto isakmp peer 1.1.1.1 255.255.255.255 proposal ISDN

!

crypto ipsec transform-set isdntr esp-3des esp-md5-hmac set pfs group2

no set security-association lifetime kilobytes

!

crypto map myisdn 10

set transform-set isdntr match address 130

set peer 1.1.1.1

!

interface FastEthernet 1

ip address 10.10.10.1 255.255.255.0 no shutdown

!

interface Dialer1 crypto map myisdn dialer pool 1 dialer string 110 encapsulation ppp dialer-group 1

ip address 1.1.1.2 255.255.255.0 no shutdown

!

ip route 20.20.20.0 255.255.255.0 1.1.1.1

!

dialer-list 1 protocol ip list 102

!

end

XSR-1805-1(config)#aaa user 1.1.1.1

XSR-1805-1(config-aaa)#password XSR

XSR-1805-2#

Configuration Guide

Page 20 of 55

Page 20
Image 20
Enterasys Networks XSR-Series manual VPN via Dialer Interface rtr2