Features of Easy VPN Server


Given that the Cisco Easy VPN feature is a work in progress, you need to be aware of the IOS requirements. If you are using an IOS router with Cisco Easy VPN, you must have IOS version 12.2(8)T or later.

graphics/alert_icon.gif

The Cisco Easy VPN features require IOS version 12.2(8)T or later if you are using a router as a headend device or remote device.


To support centralized security policies, Cisco added specific features to IOS version 12.2(8)T:

  • Group -based policy control ” Configuring security policies on a per-group basis or per- user basis.

  • IKE DPD ” Allows the concentrator to determine whether the remote VPN device is still working through the use of keepalive packets.

  • Initial contact ” Initiating a VPN connection tells the headend device to remove any previous connection information. This feature is useful when a remote device is abruptly disconnected to the headend device.

  • Mode configuration ” Supports version 6 of XAUTH.

  • Split tunneling ” Allows a VPN device to access the Internet directly and at the same time access corporate resources over a VPN tunnel.

  • XAUTH ” Supports version 6.

graphics/alert_icon.gif

Some of the new features added to IOS version 12.2(8)T are mode configuration, XAUTH, IKE DPD, and split tunneling.




CCSP SECUR Exam Cram 2
CCSP SECUR Exam Cram 2 (642-501)
ISBN: B000MU86IQ
EAN: N/A
Year: 2003
Pages: 291
Authors: Raman Sud

flylib.com © 2008-2017.
If you may any questions please contact us: flylib@qtcs.net