Virtual PrivateNetworks(VPN) IPsec
IX20 User Guide
507
n
network: The subnet of a local network interface.
Set the network:
i. Use the ?to determine available interfaces:
(config vpn ipsec tunnel ipsec_example policy 0)> local
network ?
Interface: The network interface.
Format:
defaultip
defaultlinklocal
eth1
eth2
loopback
Current value:
(config vpn ipsec tunnel ipsec_example policy 0)> local
network
ii. Set the interface. For example:
(config vpn ipsec tunnel ipsec_example policy 0)> local
network eth1
(config vpn ipsec tunnel ipsec_example policy 0)>
n
custom: Auser-defined network.
Set the custom network:
(config vpn ipsec tunnel ipsec_example policy 0)> local custom
value
(config vpn ipsec tunnel ipsec_example policy 0)>
where value is the IPv4 addressand optional netmask. The keyword any can also
be used.
n
request: Requestsa network from the remote peer.
n
dynamic: Uses the address of the local endpoint.
d. Set the port matching criteria for the local traffic selector:
(config vpn ipsec tunnel ipsec_example policy 0)> local port value
(config vpn ipsec tunnel ipsec_example policy 0)>
where value is the port number, a range of port numbers, or the keyword any.
e. Set the protocol matching criteria for the local traffic selector:
(config vpn ipsec tunnel ipsec_example policy 0)> local protocol value
(config vpn ipsec tunnel ipsec_example policy 0)>
where value is one of:
n
any: Matches any protocol.
n
tcp: Matches TCPprotocol only.