Cisco Systems OL-5532-02 manual

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32

Go to page of

A good user manual

The rules should oblige the seller to give the purchaser an operating instrucion of Cisco Systems OL-5532-02, along with an item. The lack of an instruction or false information given to customer shall constitute grounds to apply for a complaint because of nonconformity of goods with the contract. In accordance with the law, a customer can receive an instruction in non-paper form; lately graphic and electronic forms of the manuals, as well as instructional videos have been majorly used. A necessary precondition for this is the unmistakable, legible character of an instruction.

What is an instruction?

The term originates from the Latin word „instructio”, which means organizing. Therefore, in an instruction of Cisco Systems OL-5532-02 one could find a process description. An instruction's purpose is to teach, to ease the start-up and an item's use or performance of certain activities. An instruction is a compilation of information about an item/a service, it is a clue.

Unfortunately, only a few customers devote their time to read an instruction of Cisco Systems OL-5532-02. A good user manual introduces us to a number of additional functionalities of the purchased item, and also helps us to avoid the formation of most of the defects.

What should a perfect user manual contain?

First and foremost, an user manual of Cisco Systems OL-5532-02 should contain:
- informations concerning technical data of Cisco Systems OL-5532-02
- name of the manufacturer and a year of construction of the Cisco Systems OL-5532-02 item
- rules of operation, control and maintenance of the Cisco Systems OL-5532-02 item
- safety signs and mark certificates which confirm compatibility with appropriate standards

Why don't we read the manuals?

Usually it results from the lack of time and certainty about functionalities of purchased items. Unfortunately, networking and start-up of Cisco Systems OL-5532-02 alone are not enough. An instruction contains a number of clues concerning respective functionalities, safety rules, maintenance methods (what means should be used), eventual defects of Cisco Systems OL-5532-02, and methods of problem resolution. Eventually, when one still can't find the answer to his problems, he will be directed to the Cisco Systems service. Lately animated manuals and instructional videos are quite popular among customers. These kinds of user manuals are effective; they assure that a customer will familiarize himself with the whole material, and won't skip complicated, technical information of Cisco Systems OL-5532-02.

Why one should read the manuals?

It is mostly in the manuals where we will find the details concerning construction and possibility of the Cisco Systems OL-5532-02 item, and its use of respective accessory, as well as information concerning all the functions and facilities.

After a successful purchase of an item one should find a moment and get to know with every part of an instruction. Currently the manuals are carefully prearranged and translated, so they could be fully understood by its users. The manuals will serve as an informational aid.

Table of contents for the manual

  • Page 1

    CH A P T E R 4-1 Cisco IP Solution Center Integrated VPN Ma nagement Suite Secu rity User Guide, 3.2 OL-5532-02 4 Remote Access VPN Services This chapter contains the following sections: • Creating Remote Access VPN Services, page 4-1 • Adding AAA Serv er De vices to Y our Repository , page 4-2 • Creating Encryption Policies, pag e 4-5 • Cr[...]

  • Page 2

    4-2 Cisco IP Solution Center Integrated VPN Ma nagement Suite Security User Guide, 3.2 OL-5532-02 Chapter 4 Remote Access VPN Services Adding AAA Server D evices to Your Repository Note Before creating an ISC security policy or service re quest, it is necessary to populate the ISC repository with the target devices in yo ur network, collect the ini[...]

  • Page 3

    4-3 Cisco IP Solution Center Integrated VPN Ma nagement Suite Secu rity User Guide, 3.2 OL-5532-02 Chapter 4 Remo te Access VPN Services Adding AAA Server Devices to Your Rep ository Figur e 4-2 The AAA Servers P age Step 2 Click Crea te . The Create AAA Server page appears as sho wn in Figure 4-3 . Figure 4-3 The Creat e AAA Server P ag e Step 3 F[...]

  • Page 4

    4-4 Cisco IP Solution Center Integrated VPN Ma nagement Suite Security User Guide, 3.2 OL-5532-02 Chapter 4 Remote Access VPN Services Adding AAA Server D evices to Your Repository Step 4 Click Sa ve when done. The AAA Servers page appears wit h the newly created AAA server displayed in the AAA server list, as shown in Figure 4-4 . T able 4-1 Cr ea[...]

  • Page 5

    4-5 Cisco IP Solution Center Integrated VPN Ma nagement Suite Secu rity User Guide, 3.2 OL-5532-02 Chapter 4 Remo te Access VPN Services Creating Encryption Policies Figure 4-4 The AAA Servers P age Af t er Adding A New Serv er Creating Encryption Policies The encryption polic y def ines the security parameters for prot ecting data tra veling thr o[...]

  • Page 6

    4-6 Cisco IP Solution Center Integrated VPN Ma nagement Suite Security User Guide, 3.2 OL-5532-02 Chapter 4 Remote Access VPN Services Creating Remote A ccess VPN Policies T o create a remote access VPN polic y , perform the follo wing steps: Step 1 Click Service Design > P olicies . The Policies page appears as sh o wn in Figure 4-5 , with pre [...]

  • Page 7

    4-7 Cisco IP Solution Center Integrated VPN Ma nagement Suite Secu rity User Guide, 3.2 OL-5532-02 Chapter 4 Remo te Access VPN Services Creating Remote A ccess VPN Policies Step 4 The Remote Access VPN Policy – General Editor page appears as sho wn in Figu re 4-7 . Look at the list of steps in the table of contents (TOC) on the left of the page.[...]

  • Page 8

    4-8 Cisco IP Solution Center Integrated VPN Ma nagement Suite Security User Guide, 3.2 OL-5532-02 Chapter 4 Remote Access VPN Services Creating Remote A ccess VPN Policies T able 4-2 Remote Access VPN P olicy – Gener al Editor Fields Field Name T ype Instructions Name text b ox Enter a name for the policy . Howe v er , the name cannot con tain sp[...]

  • Page 9

    4-9 Cisco IP Solution Center Integrated VPN Ma nagement Suite Secu rity User Guide, 3.2 OL-5532-02 Chapter 4 Remo te Access VPN Services Creating Remote A ccess VPN Policies Step 6 Click Next to continue to the Addre ss Pools page as described in the “Definin g Address Pools” section on page 4-10 . NA T T r ave r sa l checkbox Also called NA T [...]

  • Page 10

    4-10 Cisco IP Solution Center Integrated VPN Ma nagement Suite Security User Guide, 3.2 OL-5532-02 Chapter 4 Remote Access VPN Services Creating Remote A ccess VPN Policies Note Y ou can click Finish on any of th e Remote Access VPN Polic y pages. When you click Finish , the unedited polic y parameters take the def ault settings p rovided b y ISC, [...]

  • Page 11

    4-11 Cisco IP Solution Center Integrated VPN Ma nagement Suite Secu rity User Guide, 3.2 OL-5532-02 Chapter 4 Remo te Access VPN Services Creating Remote A ccess VPN Policies Figur e 4-9 Addre ss P ools Dialog Bo x Step 3 Follo w the i nstructions in Ta b l e 4 - 3 to enter v alues in the address pool f ields. Step 4 Click OK when done to return t [...]

  • Page 12

    4-12 Cisco IP Solution Center Integrated VPN Ma nagement Suite Security User Guide, 3.2 OL-5532-02 Chapter 4 Remote Access VPN Services Creating Remote A ccess VPN Policies Step 6 Click Next to continue to t he Split T unneling Network page as sho wn in Figure 4-11 in the “Defining Split T unneling Networks (Optional)” sect ion on page 4-12 . D[...]

  • Page 13

    4-13 Cisco IP Solution Center Integrated VPN Ma nagement Suite Secu rity User Guide, 3.2 OL-5532-02 Chapter 4 Remo te Access VPN Services Creating Remote A ccess VPN Policies T able 4-4 Split T unneling Fields Field Name T ype Instructions Split T unneling Pol ic y drop-do wn list Select one of the follo wing met hods for split tu nneling: • Ever[...]

  • Page 14

    4-14 Cisco IP Solution Center Integrated VPN Ma nagement Suite Security User Guide, 3.2 OL-5532-02 Chapter 4 Remote Access VPN Services Creating Remote A ccess VPN Policies Figure 4-14 The Everything Option for Split T unnel ing Step 3 Click Next to continue to the User Li st page as described in the “Def ining the Remote Access User List (Option[...]

  • Page 15

    4-15 Cisco IP Solution Center Integrated VPN Ma nagement Suite Secu rity User Guide, 3.2 OL-5532-02 Chapter 4 Remo te Access VPN Services Creating Remote A ccess VPN Policies Figure 4-15 The Remote A ccess VP N P olic y – User List P a g e Step 2 Click Crea te . The User Creation dialog box appears as sho wn in Figure 4-16 . Figur e 4-16 User Lis[...]

  • Page 16

    4-16 Cisco IP Solution Center Integrated VPN Ma nagement Suite Security User Guide, 3.2 OL-5532-02 Chapter 4 Remote Access VPN Services Creating Remote A ccess VPN Policies Defining Cisco IOS Software-Specific Parameters In the Remote Access VPN Policy – Cisco IOS Editor page, you can select the values for the SA idle timeout as well as enable Re[...]

  • Page 17

    4-17 Cisco IP Solution Center Integrated VPN Ma nagement Suite Secu rity User Guide, 3.2 OL-5532-02 Chapter 4 Remo te Access VPN Services Creating Remote A ccess VPN Policies Step 3 Click Next to continu e to the Remote Access VPN Polic y – PIX Fire wall Edi tor page as described in the “Defining PIX Fire wall-Specific P arameters” section on[...]

  • Page 18

    4-18 Cisco IP Solution Center Integrated VPN Ma nagement Suite Security User Guide, 3.2 OL-5532-02 Chapter 4 Remote Access VPN Services Creating Remote A ccess VPN Policies Figure 4-18 The Remote A ccess VPN P o licy – PIX Fir ewall Edit or P ag e Step 2 Use the instructions in Ta b l e 4 - 7 to enter v alues for the PI X Firew all-specif ic para[...]

  • Page 19

    4-19 Cisco IP Solution Center Integrated VPN Ma nagement Suite Secu rity User Guide, 3.2 OL-5532-02 Chapter 4 Remo te Access VPN Services Creating Remote A ccess VPN Policies Figure 4-19 The Remote A ccess VPN P olic y – VPN 3000 Editor P age Step 2 Follo w the i nstructions in Ta b l e 4 - 8 to enter VPN 3000-specif ic parameters. T able 4-8 VPN[...]

  • Page 20

    4-20 Cisco IP Solution Center Integrated VPN Ma nagement Suite Security User Guide, 3.2 OL-5532-02 Chapter 4 Remote Access VPN Services Creating Remote A ccess VPN Policies Step 3 Click Next to con tinue to the VPN 3000 Access Hours pag e as shown Fig ure 4-20 in the “Defining the VPN 3000 Access Hours” secti on on page 4-20 . Defining the VPN [...]

  • Page 21

    4-21 Cisco IP Solution Center Integrated VPN Ma nagement Suite Secu rity User Guide, 3.2 OL-5532-02 Chapter 4 Remo te Access VPN Services Creating Remote A ccess VPN Policies Step 2 Follo w the i nstructions in Ta b l e 4 - 9 to enter values for each day of the week. Step 3 Click Next to continue to the VPN 3000 L2TP page as described i n the “De[...]

  • Page 22

    4-22 Cisco IP Solution Center Integrated VPN Ma nagement Suite Security User Guide, 3.2 OL-5532-02 Chapter 4 Remote Access VPN Services Creating Remote A ccess VPN Policies Figure 4-21 The Remote A ccess VPN P olic y – VPN 3000 L2TP P age Step 2 Follo w th e instructions in Ta b l e 4 - 1 0 to select options for VPN 3000 L2TP tunnelin g. T able 4[...]

  • Page 23

    4-23 Cisco IP Solution Center Integrated VPN Ma nagement Suite Secu rity User Guide, 3.2 OL-5532-02 Chapter 4 Remo te Access VPN Services Creating Remote A ccess VPN Policies Step 3 Click Next to cont inue to the Remote Access VPN Po licy Summary page as described in the “Summary Page” sectio n on page 4-23 . Summary Page When you ha ve complet[...]

  • Page 24

    4-24 Cisco IP Solution Center Integrated VPN Ma nagement Suite Security User Guide, 3.2 OL-5532-02 Chapter 4 Remote Access VPN Services Creating Remote A ccess VPN Policies Figur e 4-23 The P olicies P ag e wi th P olic y Stat us Displa yed Step 4 Continue on to the “Creating Remote Access VPN Service Requests” section on pa ge 4-25 .[...]

  • Page 25

    4-25 Cisco IP Solution Center Integrated VPN Ma nagement Suite Secu rity User Guide, 3.2 OL-5532-02 Chapter 4 Remo te Access VPN Services Creating Remote Access VPN Se rvice Requests Creating Remote Access VPN Service Requests Once the remote access policy is created, perform the follo wing steps to create a remote access s ervice request: Step 1 C[...]

  • Page 26

    4-26 Cisco IP Solution Center Integrated VPN Ma nagement Suite Security User Guide, 3.2 OL-5532-02 Chapter 4 Remote Access VPN Services Creating Remote Access VPN Service Requests Figur e 4-25 IPsec Remote A ccess Service Edit or P ag e Step 3 Follo w the in structions in Ta b l e 4 - 1 1 to en ter values for the IP sec Re mote Acce ss Service Edit[...]

  • Page 27

    4-27 Cisco IP Solution Center Integrated VPN Ma nagement Suite Secu rity User Guide, 3.2 OL-5532-02 Chapter 4 Remo te Access VPN Services Creating Remote Access VPN Se rvice Requests Remote Access Policies list Specify the remote acces s policy to us e in this service request by clicking Select . The Policy for Remote Access Servic e page appears a[...]

  • Page 28

    4-28 Cisco IP Solution Center Integrated VPN Ma nagement Suite Security User Guide, 3.2 OL-5532-02 Chapter 4 Remote Access VPN Services Creating Remote Access VPN Service Requests Figur e 4-28 The IPsec Remote A ccess Service Edit or P ag e wi th VPN and Polic y Selected Step 4 On the main IPsec Remote Access Service Editor p age, click the Select [...]

  • Page 29

    4-29 Cisco IP Solution Center Integrated VPN Ma nagement Suite Secu rity User Guide, 3.2 OL-5532-02 Chapter 4 Remo te Access VPN Services Creating Remote Access VPN Se rvice Requests Figur e 4-30 The IPsec Remote A ccess Serv ice Edit or P ag e with CPEs Selec ted Step 6 (Optiona l) Click Add T emplates to add a template to the service re quest. Fo[...]

  • Page 30

    4-30 Cisco IP Solution Center Integrated VPN Ma nagement Suite Security User Guide, 3.2 OL-5532-02 Chapter 4 Remote Access VPN Services Creating Remote Access VPN Service Requests Figure 4-32 The T emplate D ataFile Chooser P age Step 8 The templates are in the left column an d the associated data f iles are on the right. Choo se a folder of templa[...]

  • Page 31

    4-31 Cisco IP Solution Center Integrated VPN Ma nagement Suite Secu rity User Guide, 3.2 OL-5532-02 Chapter 4 Remo te Access VPN Services Creating Remote Access VPN Se rvice Requests Figure 4-33 Add/Remo ve T emplat es Dialog Bo x with T emplate A dded Step 11 For each template, chose the appropriate f ields as described in Ta b l e 4 - 1 2 . Step [...]

  • Page 32

    4-32 Cisco IP Solution Center Integrated VPN Ma nagement Suite Security User Guide, 3.2 OL-5532-02 Chapter 4 Remote Access VPN Services Creating Remote Access VPN Service Requests[...]