VPN remote akses pada packet tracer

Subscribers:
613
Published on ● Video Link: https://www.youtube.com/watch?v=Np1ryzfj_So



Duration: 3:15
1,091 views
4


Fondasi utamanya laptop (client remote access vpn) harus bisa ping ke router vpn server(router yang melayani koneksi vpn). Hal ini mengisyaratkan bahwa nat di router branch sudah ready/ok dalam menterjemahkan alamat IP private si laptop ke alamat IP publik interface outside si router branch.

Dengan settingan yang sama kita bisa membuat remote vpn di real router misalnya cisco 880.

Router corporate:
aaa new-model
aaa authentication login rtr-remote local
aaa authorization network rtr-remote local

username Cisco password 0 Cisco

crypto isakmp policy 1
encr aes 256
hash md5
authentication pre-share
group 2
lifetime 21600

crypto isakmp client configuration group rtr-remote
key cisco123
pool dynpool

crypto ipsec security-association lifetime seconds 86400

crypto ipsec transform-set vpn1 esp-3des esp-sha-hmac

crypto dynamic-map dynmap 1
set transform-set vpn1
reverse-route

crypto map dynmap client authentication list rtr-remote
crypto map dynmap isakmp authorization list rtr-remote
crypto map dynmap client configuration address respond
crypto map dynmap 10 ipsec-isakmp dynamic dynmap

ip local pool dynpool 30.30.30.20 30.30.30.30

interface FastEthernet0/0
crypto map dynmap







Tags:
Virtual Private Network (Software Genre)
Packet Tracer
Data
System
Technology