Ho questo tipo di cfg a cui devo aggiungere una mappa dinamica per una nuova VPN:
sysopt connection permit-ipsec
crypto ipsec transform-set trans esp-des esp-sha-hmac
crypto ipsec transform-set trans2 esp-des esp-md5-hmac
crypto dynamic-map map 10 set transform-set trans
crypto dynamic-map map 20 set transform-set trans2
crypto map crypto 10 ipsec-isakmp dynamic map
crypto map crypto interface outside
isakmp enable outside
isakmp key ******** address 0.0.0.0 netmask 0.0.0.0
isakmp key ******** address a.b.c.d netmask 255.255.255.255
isakmp identity address
isakmp client configuration address-pool local locale inside
isakmp policy 10 authentication pre-share
isakmp policy 10 encryption des
isakmp policy 10 hash md5
isakmp policy 10 group 2
isakmp policy 10 lifetime 3600
isakmp policy 20 authentication pre-share
isakmp policy 20 encryption des
isakmp policy 20 hash sha
isakmp policy 20 group 2
isakmp policy 20 lifetime 3600
devo aggiundegre mappa dinamica con specioficato PEER, ACCESS-LIST e TRANSFORM SET
HELP!!!
|