Configuring IPSec for IKE Pre-Shared Keys

The use of IKE pre-shared keys for authentication of IPSec sessions is relatively easy to configure, yet does not scale well for a large number of IPSec clients.

The process of configuring IKE pre-shared keys in Cisco IOS software for Cisco routers consists of four major tasks, listed next. The sections following this list discuss each configuration task in more detail.

  • Task 1: Prepare for IKE and IPSec. Determine the detailed encryption policy: identify the hosts and networks that you wish to protect, determine details about the IPSec peers, determine the IPSec features you need, and ensure that existing ACLs are compatible with IPSec.

  • Task 2: Configure IKE. Enable IKE, create the IKE policies, and ...

Get CCSP Self-Study: Securing Cisco IOS Networks (SECUR) now with the O’Reilly learning platform.

O’Reilly members experience live online training, plus books, videos, and digital content from nearly 200 publishers.