CISCO ASA L2TP ACCESS

Aus Xinux Wiki
Zur Navigation springen Zur Suche springen
ip local pool sales_addresses 209.165.202.129-209.165.202.158

group-policy sales_policy internal

group-policy sales_policy attributes

	wins-server value 209.165.201.3 209.165.201.4

	dns-server value 209.165.201.1 209.165.201.2

	vpn-tunnel-protocol l2tp-ipsec 

tunnel-group DefaultRAGroup general-attributes

	default-group-policy sales_policy

	address-pool sales_addresses

tunnel-group DefaultRAGroup ipsec-attributes

	pre-shared-key *

tunnel-group DefaultRAGroup ppp-attributes

	no authentication pap

	authentication chap

	authentication ms-chap-v1

	authentication ms-chap-v2

crypto ipsec ikev1 transform-set my-transform-set-ikev1 esp-des esp-sha-hmac

crypto ipsec ikev1 transform-set my-transform-set-ikev1 mode transport

crypto dynamic-map dyno 10 set ikev1 transform-set trans

crypto map vpn 20 ipsec-isakmp dynamic dyno

crypto map vpn interface outside

crypto ikev1 enable outside

crypto ikev1 policy 10

	authentication pre-share

	encryption 3des

	hash sha

	group 2

	lifetime 86400