To configure an IPsec tunnel on a IES or VPRN service

Before you begin

For VPRN service IPsec tunnel, IPsec security policy and entry should belong to same VPRN.

Steps
 

Choose Manage→Service→Services from the NFM-P main menu. The Manage Services form opens.


Choose an IES or VPRN service and click Properties. The service properties form opens.


Choose the L3 access interface on which you want to configure an IPsec tunnel and click Properties. The L3 Access Interface (Edit) form opens.


Click the IPSec tab.


Click Create. The IPSec (Create) form opens. Configure the required parameters.


Click IPSec Tunnel tab.


Click Create. The IPSec Tunnel (Create) form opens.


Configure the parameters on the General tab.


Configure the Copy Traffic Class Upon Decapsulation and Keying parameters.

Note: Based on the value selected for the Keying parameter, additional tabs will be displayed.


10 

If Dynamic value is selected for the Keying parameter, the Dynamic Keying tab is displayed. Click Dynamic Keying tab.


11 

Configure the IPsec transform sets, IKE policies and the Pre-shared key parameter.


12 

Save your changes and close the forms.

End of steps