Planning IKEv1 Phase 2

For IKEv1 Phase 2, which is the actual tunnel that will be used to protect the user’s packets, we have the elements listed in Table 7-4 to plan for.

Image
Image

Table 7-4 IKEv1 Phase 2 Policy Options

For our customer, we document and decide to implement the following for IKEv1 Phase 2:

Image VPN Peer global IP addresses: R1=209.165.200.225 R2=209.165.201.1

Traffic to protect: Bidirectional traffic between 172.16.0.0/16 (R1’s local network) ...

Get Santos:CCNA Sec 210-260 OCG now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.