Define the IKE
Proposals (Optional)
You must also configure any new IKE proposals before you
attempt to configure the LAN-to-LAN connections. See the Configuration | System
| Tunneling Protocols | IPSec | IKE Proposals screens. If the Cisco defaults are
adequate or if any new proposals were defined as part of setting the initial
defaults, this process is unnecessary.
If an IKE proposal needs to be added or modified, such as to use
digital certificates, you must change settings for IKE negotiation.
IKE Configuration
Use the Manager navigation to locate the Configuration |
System | Tunneling Protocols IPSec | IKE Proposals screen, as shown in Figure
16-7. This screen displays both the Active and Inactive IKE options
available on the Concentrator.
You can change an existing active proposal or create a new one
using the Modify or Add buttons, respectively. Either way, a screen similar to
the one shown in Figure 16-8 will appear. Make any needed changes,
and then click the Apply button.
The resulting IKE proposal will be available in a drop-down
list in the next section when it’s time to establish the
LAN-to-LAN connection.