Step 3. Click the Create a Site to Site VPN radio button and then click the Launch
the Selected Task button.
Step 4. Click the View Defaults button and peruse the SDM default crypto
selections:
SDM Crypto/IPsec Default Values:
??? Authentication Method: Pre-Shared Key
??? Encryption: 3DES
??? Negotiation Authentication: SHA (Hash)
??? Public Key Cryptography: Dif?¬?e-Hellman Group 2
Step 5. Click Next to display the window shown in Figure 4-2.
Winnipeg#show crypto dynamic-map Displays a dynamic crypto
map set
Winnipeg#show crypto map Displays the crypto map
con?¬?guration
Winnipeg#debug crypto ipsec Displays IPsec events
Winnipeg#debug crypto isakmp Displays messages about
IKE events
Winnipeg#debug crypto isakmp error Displays error messages
for IKE-related operations
Winnipeg#debug crypto ipsec error Displays error messages
for IPsec-related
operations
44 Con?¬?guring IPsec Site-to-Site VPNs Using SDM
Figure 4-2 Site-to-Site VPN Connection Information
Step 6. In the VPN Connection Information area, click the drop-down arrow and
choose FastEthernet0/0. FastEthernet 0/0 is the terminating interface on the
Winnipeg router.
Step 7. In the Peer Identity area, click the drop-down arrow and choose Peer with a
Static Address.
Pages:
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52