© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Lesson 10 Configure the Cisco VPN 3002 Hardware Client for Remote Access Using Pre-Shared Keys
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Objectives Upon completion of this lesson, you will be able to perform the following tasks: Configure the Cisco VPN 3002 Hardware Client for client mode remote access. Configure the Cisco VPN 3002 Hardware Client for network extension mode remote access. Monitor the status of the Cisco VPN 3002 Hardware Client.
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Cisco VPN 3002 Hardware Client Remote Access with Pre-Shared Keys
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Remote Access Remote User Single user SOHO Server ISP Internet
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Remote Access Tunnel IPSec tunnel or session Hardware Client Internet Application server Concentrator
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Hardware Client Modes PAT Client mode Network extension mode Internet Internet
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Remote Access TunnelingHardware Client Mode PC IP address Application server ISP Hardware Client VPN private IP VPN public IP NIC IP address Client IP address ESP Data PAT Internet
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Hardware ClientPhysical Connections Console port VPN private IP VPN public IP Power Hardware reset switch Internet
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Hardware ClientConfiguration Options Welcome to Cisco Systems VPN 3000 Concentrator Series Command Line Interface Copyright (C) Cisco Systems, Inc. 1) Configuration 2) Administration 3) Monitoring 4) Save changes to Config file 5) Help Information 6) Exit
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN GUI Table of contents Toolbar Manager screen
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Quick Configuration
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN System Information
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Configuration Upload
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Private IP Address Interface Ethernet 1 (private IP address) Ethernet 2 (public IP address)
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Public IP Address Interface Ethernet 1 (private IP address) Ethernet 2 (public IP address) Default gateway Internet
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN IPSec Protocol Grouptraining Userstudent1 Peers Internet Concentrator Concentrator authentication Private network authentication
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN PAT Internet
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN DNS boston01 Internet DNS ISP
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Static Routes Internet
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Admin Password
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Access Rights Hardware Client
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Launching the Client Internet
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Hardware ClientMonitoring System Status Internet Tunnel
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN ConcentratorMonitor Session Internet Tunnel
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN ConcentratorMonitor Session Details Internet Tunnel
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Network Extension Mode Network extension mode Internet
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN ConcentratorHardware Client Tab Internet
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Quick ConfigurationIP Address Internet
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Quick ConfigurationNetwork Extension Mode Internet
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Hardware ClientMonitor Status Internet Tunnel
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN ConcentratorMonitor Session Internet
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN ConcentratorMonitor Session Detail Internet
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Summary
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Summary The Cisco VPN 3002 Hardware Client supports two modes: client and network extension. Client mode will translate the PC IP address via PAT. All traffic from private networks appears as a single-source IP address. In network extension mode, all PCs are uniquely addressable via the tunnel.
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Lab Exercise
© 2003, Cisco Systems, Inc. All rights reserved. CSVPN Lab Visual Objective P Concentrator.1PP RTS RBB Student PC PP P.0.5 DHCP server PP Hardware Client