
15
Cisco VPN 3000 Series Concentrators Interoperability Profile
Configuring a LAN-to-LAN IPSec Connection
Configuring a LAN-to-LAN IPSec Connection
When you create a LAN-to-LAN connection, the VPN Concentrator automatically:
• Creates two filter rules with the Apply IPSec action: one inbound, one outbound, named
L2L:<Name> In and L2L:<Name> Out, in this example L2L:A to B In and L2L: A to B Out.
• Creates an IPSec Security Association named L2L:<Name>, in this example L2L: A to B.
• Applies these rules to the filter on the public interface and applies the SA to the rules. If the public
interface does not have a filter, it applies the Public (default) filter with the preceding rules.
• Creates a group named with the Peer IP address. If the VPN Concentrator internal authentication
server has not been configured, it does so, and adds the group to the database.
To create a LAN-to-LAN IPSec connection, follow these steps:
Step 1 In the table of contents, click Configuration > System > Tunneling Protocols > IPSec >
LAN-to-LAN. The Configuration | System | Tunneling Protocols | IPSec LAN-to-LAN screen displays.
Figure 11 Configuration | System | Tunneling Protocols | IPSec LAN-to-LAN Screen
Step 2 Click the Add button.
The Configuration | System | Tunneling Protocols | IPSec LAN-to-LAN | Add screen displays.
Comentarios a estos manuales