Configuring IKE and IPSec


Overview/Description
To list the steps to configure IPSec encryption on Cisco routers and in creating an IKE and IPSec security policy, and to identify the commands used in its configuration

Target Audience
Network engineers responsible for configuring, implementing, troubleshooting, and managing WAN and remote access solutions; network architects responsible for designing WAN and remote access solutions; CCNP candidates; CCIE candidates

Prerequisites
A knowledge of general networking terms and concepts; experience in general Cisco router operation and configuration, including TCP/IP, routing protocols (RIP, IGRP), routed protocols (IP, IPX), standard and extended access lists, PPP operation and configuration over serial links, Frame Relay operation and configuration on interfaces and subinterfaces, and legacy DDR over ISDN-BRI operation and configuration; a basic knowledge of data networking equivalent to the information in the Cisco Certified Network Associate Basics (CCNAB) v2.0 course and the Interconnecting Cisco Network Devices (ICND) v2.0 course; experience working in a network environment is recommended

Expected Duration
160 Minutes

Objectives:

Configuring IKE and IPSec

  • identify the steps to create an IKE and IPSec security policy and define the process for determining the IKE Phase 1 policy and its parameters.
  • determine IPSec policy, and identify the commands necessary to ensure that the network and access lists work.
  • list the steps and identify the commands required to configure IKE.
  • identify the steps and commands used to create an IKE and IPSec security policy.
  • list the steps to configure IPSec encryption on Cisco routers and identify the commands to configure transform set suites, access lists, and global IPSec SA lifetimes.
  • identify the purpose of crypto maps and the commands used to configure and apply them.
  • list and use the commands for testing and verifying IPSec.
  • configure, test, and verify IPSec on a Cisco router.

  • Course Number: 120797_eng