--- IPSec Traffic Selectors ---
Identifier Destination IP Address Remote Tunnel Endpoint Id
---------- ---------------------- -------------------------
4
172.60.1.163/32
--- IPSec Keys ---
Remote Host Id
--------------
200.200.200.3
200.200.200.4
IPSec Quick config>
La configuración IPSec generada tras realizar la operación MAKE y reiniciar es la siguiente:
Config>protocol ip
IP config>ipsec
IPSec config>list all
IPSec Access Control.
Access Control is: enabled
QOS Preclassify is: disabled
ACCESS-LIST
1
IPS SRC=172.24.0.0/16 DES=172.60.1.163/32 Conn:1
NORMAL ENTRY. Templates: 2
2
IPS SRC=210.10.10.1/32 DES=172.60.1.163/32 Conn:1
NORMAL ENTRY. Templates: 2
TEMPLATES
1 isakmp 3DES MD5
BACKUP DES 1=200.200.200.4
LifeTime:1h0m0s
IKE AGGRESSIVE
PRESHARED
fqdn ID TYPE
OAKLEY GROUP 1
UDP Encapsulation
2 dynamic ESP-3DES ESP-MD5
LifeTime:0h55m0s 4608000 kbytes
PFS disabled
2 key entries
200.200.200.3 ************
200.200.200.4 ************
0 rsakey entries
Id.
KeepAlive Configuration:
Maximum number of encoded packets without receiving an answer: 2.
Timeout after last packet encoded: 20 seconds.
DPD Configuration:
Idle period(secs) before sending DPD keepalives: 60
Maximum number of DPD keepalives not acknowledged: 3
Period of time(secs) between DPD keepalives: 5
Always send keepalive after idle period expiration : ENABLED
Anti-replay : DISABLED
Check-out time (%) - from SA's end-lifetime - to renegotiate : 10
SA's purge timeout:
Use software exponentiation
IPSec config>
DES=200.200.200.3
SRC=210.10.10.1 DES=200.200.200.3
Date.
Len
15
– Menú rápido
TELDAT C
Configuración línea de comandos
63
II -
11
Key
--------
********
********
CA.
(DB8B34)
(DB8B34)
Cert sn.
Doc.DM211
Rev.6.0