EasyManua.ls Logo

Digi TransPort - Tunnel Negotiation Parameter

Digi TransPort
813 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
IPsec parameters
Digi TransPort User Guide 401
Tunnel Negotiation parameter
Enable IKE tracing
Enables the router to write IKE negotiation information in the analyser trace.
Negotiate a different IP address and Mask
The IPsec tunnel can be configured to negotiate a different local LAN IP address and mask. The
firewall can then be used to translate the source addresses of the packets to a value that lies
within the negotiated range. This is so that a packet can match more than one IPsec tunnel but
will use a different source address (from the peer’s perspective) depending on which IPsec
tunnel gets used.
IP Address
The alternative IP address to negotiate.
Mask
The alternative IP mask to negotiate.
Negotiate a virtual IP address using MODECFG
Used when the remote peer is a Cisco device using MODECFG to assign a specific IP address to
this router during SA setup negotiations. This is commonly seen in Remote Access (RA) type
VPNs and EasyVPN solutions.
XAuth ID
Extended Authentication ID for use with Cisco XAUTH.
Related CLI commands
Entity Instance Parameter Values Equivalent Web Parameter
eroute n debug on, off Enable IKE tracing
eroute n neglocip IP Address Negotiate a different IP address
and Mask
eroute n neglocmsk IP Mask Negotiate a different IP address
and Mask
eroute n vip on, off Negotiate a virtual IP address using
MODECFG
eroute n xauthid String XAuth ID

Table of Contents

Related product manuals