User manual
104
7.1 CASE#1: VANGUARD CONFIGURED IPSEC CLIENT
Where:
Remote Subnet: 10.100.0.0/21
Firewall External IP (Remote IP): A.B.C.D
Vanguard PPP IP (Local IP): W.X.Y.Z
Local Subnet: 10.100.10.0/24
7.1.1 CISCO ROUTER – VPN SERVER CONFIGURATION EXAMPLE
!
crypto isakmp policy 2
encr 3des
authentication pre-share
group 2
crypto isakmp key D3m0$K3y!2H3rk address W.X.Y.Z
!
crypto ipsec transform-set esp3dessha1 esp-3des esp-sha-hmac
crypto ipsec df-bit clear
!
crypto map ETH0 10010 ipsec-isakmp
description CAL-AMP
set peer W.X.Y.Z
set transform-set esp3dessha1
match address V1-CAL-AMP
qos pre-classify
!
interface FastEthernet4
ip address A.B.C.D 255.255.255.248
ip access-group INET-ACL in
load-interval 30
duplex auto