Easy vpn server introduce and referrence


Table Of Contents

Easy VPN Server

Contents

Restrictions for Easy VPN Server

Information About Easy VPN Server

How It Works

RADIUS Support for Group Profiles

RADIUS Support for User Profiles

Supported Protocols

Functions Supported by Easy VPN Server

How to Configure Easy VPN Server

Enabling Policy Lookup via AAA

Defining Group Policy Information for Mode Configuration Push

Enabling VPN Session Monitoring

Verifying a VPN Session

Applying Mode Configuration and Xauth

Enabling Reverse Route Injection for the Client

Enabling IKE Dead Peer Detection

Configuring RADIUS Server Support

Verifying Easy VPN Server

Configuring a Banner

Configuring Auto Upgrade

Configuring Browser Proxy

Configuring the Pushing of a Configuration URL Through a
Mode-Configuration Exchange

Configuring Per User AAA Download with PKI—Configuring the Crypto PKI Trustpoint

Configuring the Actual Per User AAA Download with PKI

Enabling Easy VPN Syslog Messages

Defining a CPP Firewall Policy Push Using a Local AAA Server

Applying a CPP Firewall Policy Push to the Configuration Group

Defining a CPP Firewall Policy Push Using a Remote AAA Server

Adding the VSA CPP-Policy Under the Group Definition

Verifying CPP Firewall Policy Push

Configuring Password Aging

Configuring Split DNS

Verifying Split DNS

Monitoring and Maintaining Split DNS

Configuring an Easy VPN Server to Obtain
an IP Address from a DHCP Server

Verifying DHCP Client Proxy

Monitoring and Maintaining DHCP Client Proxy

Configuring cTCP

Verifying cTCP

Monitoring and Maintaining a cTCP Configuration

Troubleshooting a cTCP Configuration

Configuration Examples for Easy VPN Server

Configuring Cisco IOS for Easy VPN Server: Example

RADIUS Group Profile with IPsec AV Pairs: Example

RADIUS User Profile with IPsec AV Pairs: Example

Backup Gateway with Maximum Logins and Maximum Users: Example

Easy VPN with an IPsec Virtual Tunnel Interface: Example

Pushing a Configuration URL Through a
Mode-Configuration Exchange: Examples

Per User AAA Policy Download with PKI: Example

Network Admission Control: Example

Configuring Password Aging: Example

Split DNS: Examples

DHCP Client Proxy: Examples

cTCP Session: Example

Additional References

Related Documents

Standards

MIBs

RFCs

Technical Assistance

Command Reference

aaa authentication login

access-restrict

acl (ISAKMP)

auto-update client

backup-gateway

banner

clear crypto ctcp

clear crypto session

browser-proxy

client pki authorization list

configuration url

configuration version

crypto ctcp

crypto ipsec server send-update

crypto isakmp client configuration browser-proxy

crypto isakmp client configuration group

crypto isakmp client firewall

crypto logging ezvpn

debug crypto ctcp

debug crypto condition

debug ip dns name-list

debug ip dns view

debug ip dns view-list

dhcp server (isakmp)

dhcp timeout

domain (isakmp-group)

firewall are-u-there

firewall policy

group-lock

include-local-lan

key (isakmp-group)

max-logins

max-users

pfs

policy

pool (isakmp-group)

proxy

save-password

show crypto ctcp

show crypto debug-condition

show crypto ipsec sa

show crypto isakmp peers

show crypto isakmp profile

show crypto isakmp sa

show crypto session

show crypto session group

show crypto session summary

show ip dns name-list

show ip dns view

show ip dns view-list

split-dns

wins

Glossary

Feature Information for Easy VPN Server

original text:

http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/122newft/122t/122t8/ftunity.htm

Share

发表评论

电子邮件地址不会被公开。 必填项已用 * 标注

*


*

您可以使用这些 HTML 标签和属性: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>