6-10
Cisco 850 Series and Cisco 870 Series Access Routers Software Configuration Guide
OL-5332-01
Chapter 6
Configuring a VPN Using Easy VPN and an IPSec Tunnel
Create an Easy VPN Remote Configuration
Create an Easy VPN Remote Configuration
The router acting as the IPSec remote router must create an Easy VPN remote configuration and assign
it to the outgoing interface.
Perform these steps to create the remote configuration, beginning in global configuration mode:
Step 2
crypto map
map-name
Example:
Router(config-if)#
crypto map static-map
Router(config-if)#
Applies the crypto map to the interface.
See the
Cisco IOS Security Command Reference
for more detail about this command.
Step 3
exit
Example:
Router(config-crypto-map)#
exit
Router(config)#
Returns to global configuration mode.
Command or Action
Purpose
Command or Action
Purpose
Step 1
crypto ipsec client ezvpn
name
Example:
Router(config)#
crypto ipsec client ezvpn
ezvpnclient
Router(config-crypto-ezvpn)#
Creates a Cisco Easy VPN remote configuration,
and enters Cisco Easy VPN remote configuration
mode.
Step 2
group
group-name
key
group-key
Example:
Router(config-crypto-ezvpn)#
group
ezvpnclient key secret-password
Router(config-crypto-ezvpn)#
Specifies the IPSec group and IPSec key value for
the VPN connection.
Step 3
peer
{
ipaddress
|
hostname
}
Example:
Router(config-crypto-ezvpn)#
peer
192.168.100.1
Router(config-crypto-ezvpn)#
Specifies the peer IP address or hostname for the
VPN connection.
Note
A hostname can be specified only when
the router has a DNS server available for
hostname resolution.
Step 4
mode
{
client
|
network-extension
|
network
extension plus
}
Example:
Router(config-crypto-ezvpn)#
mode client
Router(config-crypto-ezvpn)#
Specifies the VPN mode of operation.