Cisco PIX 525 Spécifications Page 415

  • Télécharger
  • Ajouter à mon manuel
  • Imprimer
  • Page
    / 466
  • Table des matières
  • MARQUE LIVRES
  • Noté. / 5. Basé sur avis des utilisateurs
Vue de la page 414
B-11
Cisco PIX Firewall and VPN Configuration Guide
78-15033-01
Appendix B Configuration Examples for Other Remote Access Clients
Windows 2000 Client with IPSec and L2TP
Step 7 (Optional) Instruct the PIX Firewall to send WINS server IP addresses to the client:
vpdn group group_name client configuration wins wins_server_ip1 wins_server_ip2
Step 8 Specify authentication using the PIX Firewall local username/password database. If set to aaa,
authenticate using the AAA server.
vpdn group group_name client authentication aaa aaa_server_tag
or
vpdn group group_name client authentication local
Step 9 (Optional) Generate a AAA accounting start and stop record for an L2TP (and PPTP) session:
vpdn group group_name client accounting aaa_server_tag
Step 10 If local authentication is used, the following command specifies username/password entries:
vpdn username username password password
Step 11 (Optional) Specify the L2TP keep-alive/hello timeout value:
vpdn group_name l2tp tunnel hello hello timeout
The default timeout value is 60, and the lower and upper limits are 10 and 300, respectively.
Step 12 Enable vpdn function on a PIX Firewall interface:
vpdn enable ifname
Windows 2000 Client with IPSec and L2TP
This section provides an example of how to configure the PIX Firewall for interoperability with a
Windows 2000 client. It includes the following topics:
Overview, page B-12
Configuring the PIX Firewall, page B-12
Enabling IPSec Debug, page B-15
Getting Additional Information, page B-15
Note The PIX Firewall will not establish an L2TP/IPSec tunnel with a Windows 2000 client if either the Cisco
VPN Client or the Cisco VPN 3000 Client Version 2.5 is installed. To work around this problem, disable
the “Cisco Systems, Inc.VPN Service” from the Services panel in Windows 2000. To open the Services
panel, click Start>Programs>Administrative Tools>Services. Then restart the “IPSec Policy Agent
Service” from the Services panel, and reboot the machine.
Vue de la page 414
1 2 ... 410 411 412 413 414 415 416 417 418 419 420 ... 465 466

Commentaires sur ces manuels

Pas de commentaire