User`s guide
XSR User’s Guide 253
Chapter 11 VPN Applications
Configuring the Virtual Private Network
Figure 47 OSPF Used with Failover
To test this configuration, attach an FTP server to the corporate network and
an FTP client to the client's network with the hello-interval set to 2 seconds
and dead-interval to 6 seconds on the VPN interfaces. Then initiates an FTP
transfer from the server to the client. During the transfer, intentionally break
the tunnel used for data transfer. After 6 seconds, OSPF will declare the link
non-operational and resume the FTP transfer.
Limitations
IPSec may also be used without configuring the VPN interface by applying
crypto maps to physical interfaces. In this application, IPSec is treated as a side
effect of data transmission through the interface. Since no virtual interface
(VPN1, e.g.) is applied to the IPSec connection, a routing protocol like OSPF
cannot be configured.
Corporate network
INTERNET
F1
VPN 1
Server 2
Client
F2
Segment is extension of corporate network
F2
F1
VPN 1
VPN 1
Server 1
F2
F1
VPN 2