User Guide
Secure Remote Access Points 19
Chapter 2
Click
Add in the IKE Policies panel.
Set the priority to 1 and authentication to pre-share on the Add Policy page.
Click Apply to apply the changes made.
From the CLI enter:
(Alcatel4324)# configure t
(Alcatel4324) (config)# crypto isakmp policy 1
(Alcatel4324) (config-isakmp)# authentication pre-share
(Alcatel4324) (config-isakmp)# exit
(Alcatel4324) (config)
3 Create a user-role for the Remote AP.
Once the remote AP is VPN authenticated successfully, the remote AP is
assigned a role. This role is a temporary role assigned to AP until it completes
the bootstrap process after which it inherits the ap-role. The appropriate ACLs
need to be enabled to permit traffic from the switch to the AP and back to
facilitate the bootstrap process.
From the CLI enter:
(Alcatel6000) #configure terminal
(Alcatel6000) (config) #user-role remote-ap
(Alcatel6000) (config-role) #session-acl allowall
(Alcatel6000) (config-role) #exit
(Alcatel6000) (config) #
The ACLs in this step contain the following rules:










