Chapter 16. Router ISAKMP/IKE Phase 1 Connectivity

This chapter is the first chapter on configuring routers for VPN implementations, where I’ll focus on setting up ISAKMP/IKE Phase 1 to establish a management connection to a remote IPsec peer (site-to-site or remote access). I assume that you have a basic understanding of the Cisco IOS.

In this chapter, I’ll discuss the commands that are used to create an ISAKMP/IKE Phase 1 policy for your management connection and the three types of supported device authentication: pre-shared keys, RSA encrypted nonces, and RSA signatures. I’ll also briefly discuss how to manage and monitor your management connections. I’ll wrap up the chapter discussing a new feature of the IOS, where you can have a Cisco ...

Get The Complete Cisco VPN Configuration Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.