To configure an IPsec tunnel on a IES or VPRN service
Before you begin
For VPRN service IPsec tunnel, IPsec security policy and entry should belong to same VPRN.
Steps
1 |
Choose Manage→Service→Services from the NFM-P main menu. The Manage Services form opens. |
2 |
Choose an IES or VPRN service and click Properties. The service properties form opens. |
3 |
Choose the L3 access interface on which you want to configure an IPsec tunnel and click Properties. The L3 Access Interface (Edit) form opens. |
4 |
Click the IPSec tab. |
5 |
Click Create. The IPSec (Create) form opens. Configure the required parameters. |
6 |
Click IPSec Tunnel tab. |
7 |
Click Create. The IPSec Tunnel (Create) form opens. |
8 |
Configure the parameters on the General tab. |
9 |
Configure the Copy Traffic Class Upon Decapsulation and Keying parameters. Note: Based on the value selected for the Keying parameter, additional tabs will be displayed. |
10 |
If Dynamic value is selected for the Keying parameter, the Dynamic Keying tab is displayed. Click Dynamic Keying tab. |
11 |
Configure the IPsec transform sets, IKE policies and the Pre-shared key parameter. |
12 |
Save your changes and close the forms. End of steps |