EasyManuals Logo

Cisco 3925 User Manual

Cisco 3925
408 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #140 background imageLoading...
Page #140 background image
132
Cisco 3900 Series, Cisco 2900 Series, and Cisco 1900 Series Integrated Services Routers Generation 2 Software Configuration Guide
Chapter Configuring Security Features
Configuring VPN
Figure 1 Remote Access VPN Using IPSec Tunnel
The Cisco Easy VPN client feature eliminates much of the tedious configuration work by implementing
the Cisco Unity Client protocol. This protocol allows most VPN parameters, such as internal IP
addresses, internal subnet masks, DHCP server addresses, Windows Internet Naming Service (WINS)
server addresses, and split-tunneling flags, to be defined at a VPN server, such as a Cisco VPN 3000
series concentrator that is acting as an IPSec server.
A Cisco Easy VPN server–enabled device can terminate VPN tunnels initiated by mobile and remote
workers who are running Cisco Easy VPN Remote software on PCs. Cisco Easy VPN server–enabled
devices allow remote routers to act as Cisco Easy VPN Remote nodes.
The Cisco Easy VPN client feature can be configured in one of two modes—client mode or network
extension mode. Client mode is the default configuration and allows only devices at the client site to
access resources at the central site. Resources at the client site are unavailable to the central site.
Network extension mode allows users at the central site (where the Cisco VPN 3000 series concentrator
is located) to access network resources on the client site.
After the IPSec server has been configured, a VPN connection can be created with minimal configuration
on an IPSec client. When the IPSec client initiates the VPN tunnel connection, the IPSec server pushes
the IPSec policies to the IPSec client and creates the corresponding VPN tunnel connection.
1 Remote networked users
2 VPN client—Cisco 3900 series, 2900 series, or 1900 series ISR
3 Router—Provides corporate office network access
4 VPN server—Easy VPN server; for example, a Cisco VPN 3000 concentrator with outside
interface address 210.110.101.1
5 Corporate office with a network address of 10.1.1.1
6 IPSec tunnel
2
1
121782
Internet
3
4
5
6

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco 3925 and is the answer not in the manual?

Cisco 3925 Specifications

General IconGeneral
Product TypeRouter
Form FactorRack-mountable
Data Link ProtocolEthernet, Fast Ethernet, Gigabit Ethernet
Connectivity TechnologyWired
PowerAC 120/230 V (50/60 Hz)
Redundant Power SupplyOptional
Routing ProtocolOSPF, IS-IS, BGP, EIGRP, PIM
Network/Transport ProtocolIPSec
Remote Management ProtocolSNMP, Telnet, SSH, HTTP
Encryption AlgorithmDES, Triple DES, AES
Flash Memory256 MB
Weight11.5 kg
Interfaces2 x SFP (mini-GBIC)
Power SourceInternal power supply
Authentication MethodRADIUS, TACACS+, LDAP
Compliant StandardsIEEE 802.1Q, IEEE 802.3af
Operating Temperature0 to 40 °C
Operating Humidity5% to 85% (non-condensing)
Dimensions (WxDxH)44.5 x 47.2 x 8.9 cm

Related product manuals