Configuring IKE Phase 1

After you plan for IKE and IPSec and verify the router's current configuration, it is time to implement IPSec. You can always use the show running-config to verify a router's current configuration. Another good command is show access-lists. You use this command because you need to ensure that your current ACLs are not blocking IPSec protocols.

Prior to implementing IKE and IPSec, you fully plan the implementation.

The goal of planning for IKE Phase 1 is to minimize potential misconfigurations.

Encapsulating Security Payload ...

Get SECUR Exam Cram™ 2 (Exam 642-501) now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.