IOSEasyVPNServer radius attributes

From: Ajay mehra <ajaymehra01_at_gmail.com>
Date: Fri, 10 Jul 2009 14:48:23 +0530

Hi,

I read some where that for IOSEasyVPN server using radius there are two
compulsory attributes:

ipsec:tunnel-type=ESP and
ipsec:key-exchange=ike
that must be defined as stated.

In my ACS configuration I have only three Radius IETF Attribute
*

Service-Type=Outbound

**Tunnel-Type=IP ESP*
*

Tunnel-Password=<PSK>"

and just two AV pairs attribute for split tunneling and pool.

ipsec:addr-pool=EZVPN_POOL
ipsec:inacl=SPLIT_ACL

Why does the book say that those two attributes are compulsory? I could
establish the tunnel with out defining compulsory attributes.

Thanks,

Ajay

*

Blogs and organic groups at http://www.ccie.net
Received on Fri Jul 10 2009 - 14:48:23 ART

This archive was generated by hypermail 2.2.0 : Sat Aug 01 2009 - 13:10:22 ART