Existing Configuration Management Using Router MC


Instead of re-creating an IKE and IPSec policy from scratch, you can upload an existing configuration into the Router MC. However, keep in mind that the upload feature is not intended to be used networkwide. You should bring only select device configurations into the Router MC, not most or all of your network VPN device configurations.

The Router MC also does not support all VPN command-line interface (CLI) commands, and you must ensure that specific requirements are met for an upload to be successful. Any commands that the Router MC does not support are ignored.

To successfully upload a configuration, the router CLI VPN configuration must contain a failover policy as the GUI policy discussed previously. The router's CLI VPN configuration must contain either authentication using Rivest, Shamir, and Adleman (RSA) signatures or preshared keys, and only one preshared key per device is supported. Also, the router's domain name must be the same as the CA identity.

To upload a configuration, click Configure, Upload and select a target group or router. Then, simply click Upload.



CCSP SECUR Exam Cram 2
CCSP SECUR Exam Cram 2 (642-501)
ISBN: B000MU86IQ
EAN: N/A
Year: 2003
Pages: 291
Authors: Raman Sud

flylib.com © 2008-2017.
If you may any questions please contact us: flylib@qtcs.net