
B-16
Cisco PIX Firewall and VPN Configuration Guide
78-15033-01
Appendix B Configuration Examples for Other Remote Access Clients
Using Cisco VPN Client Version 1.1
How to Install a Certificate for Use with IP Security (IPSec):
http://www.microsoft.com/windows2000/en/server/help/default.asp?url=/WINDOWS2000/en/server/h
elp/sag_VPN_us26.htm
How to use a Windows 2000 Machine Certificate for L2TP over IPSec VPN Connections:
http://www.microsoft.com/windows2000/techinfo/planning/security/ipsecsteps.asp#heading3
How to Create a Custom MMC Console and Enabling Audit Policy for Your Computer:
http://support.microsoft.com/support/kb/articles/Q259/3/35.ASP
Using Cisco VPN Client Version 1.1
The example in this section shows use of Extended Authentication (Xauth), IKE Mode Config and a
wildcard, pre-shared key for IKE authentication between a PIX
Firewall and a Cisco Secure VPN Client,
Version 1.1.
This section includes the following topics:
• Configuring the PIX Firewall, page B-17
• Configuring the Cisco Secure VPN Client Version 1.1, page B-19
Figure B-5 illustrates the example network.
Figure B-5 VPN Client Access
VPN Client user
(10.1.1.0/24 local address
when terminated on the PIX)
192.168.101.1
209.165.200.227
209.165.200.229
Router
PIX
Firewall
10.0.0.1
192.168.101.2
AAA Server
partnerauth
10.0.0.15
DNS/WINS Server
10.0.0.14
44311
San Jose Office
Internet
Commentaires sur ces manuels