Cisco VPN 3000 User's Guide Page 270

  • Download
  • Add to my manuals
  • Print
  • Page
    / 502
  • Table of contents
  • TROUBLESHOOTING
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 269
13 Policy Management
13-20
VPN 3000 Concentrator Series User Guide
You apply SAs to filter rules that are configured with an Apply IPSec action, for LAN-to-LAN traffic. See
Configuration | Policy Management | Traffic Management | Rules. The VPN Concentrator automatically
creates and applies appropriate rules when you create a LAN-to-LAN connection; see
Configuration |
System | Tunneling Protocols | IPSec LAN-to-LAN
. You also apply SAs to groups and users, for remote-access
traffic, under the
IPSec Parameters section on the appropriate Configuration | User Management screens.
You can use IPSec in both client-to-LAN (remote-access) configurations and LAN-to-LAN
configurations. The Cisco VPN 3000 Client complies with the IPSec protocol and is specifically
designed to work with the VPN Concentrator. However, the VPN Concentrator can establish IPSec
connections with many protocol-compliant clients. Likewise, the VPN Concentrator can establish
LAN-to-LAN connections with other protocol-compliant VPN devices (often called secure gateways).
The instructions in this section, however, assume peer VPN Concentrators.
The Cisco VPN 3000 Client supports these IPSec attributes:
Aggressive Negotiation Mode
Authentication Algorithms:
ESP-MD5-HMAC-128
ESP-SHA1-HMAC-160
Authentication Modes:
Preshared Keys
X.509 Digital Certificates
Diffie-Hellman Group 1
Encryption Algorithms:
DES-56
3DES-168
Extended Authentication (XAuth)
Mode Configuration (also known as ISAKMP Configuration Method)
Tunnel Encapsulation Mode
Figure 13-10: Configuration | Policy Management | Traffic Management | Security Associations
screen
Page view 269
1 2 ... 265 266 267 268 269 270 271 272 273 274 275 ... 501 502

Comments to this Manuals

No comments