IPsec VPN Overview
Except on the first page, right running head:
Heading1 or Heading1NewPage text (automatic)
815
Alcatel-Lucent
Beta Beta
OmniAccess 5740 Unified Services Gateway CLI Configuration Guide
DEFAULT CONFIGURATION SETTING ON OMNIACCESS 5740 USG
To ease the setup of IPsec tunnel, OmniAccess 5740 USG provides the following
default configurations:
• If an IKE policy is not configured, you can attach ‘default’ IKE policy to the crypto
map. Following are the default values for the ‘default’ IKE policy:
i. Default proposal in IKE policy: md5-des
ii. Default PFS group in IKE policy: pfs group2
iii. Default IPsec security-association lifetime in seconds: 28800
iv. Default IKE lifetime in seconds: 86400
• Default authentication mechanism: Pre-shared Keys (PSK)
• If a transform set is not configured, the ‘default’ transform set is applied to the
crypto map. Following are the default values for transform-set:
i. esp-sha1-des
ii. esp-md5-des
• Following are the default values for a newly configured crypto map:
i. Default transform set in crypto map: ‘default’ transform set
ii. Default PFS group in crypto map: pfs group2.
iii. Default lifetime in seconds for a crypto map: 28800