Modifying advanced spoke settings – H3C Technologies H3C Intelligent Management Center User Manual

Page 198

Advertising
background image

188

If the authentication method is RADIUS, whether to include the domain name in the entered

username depends on the Username Format setting in RADIUS.

e.

Select the Plaintext or Ciphertext format for the AAA authentication key in the Password Type
field.

f.

Enter the AAA authentication key for the spoke in the VAM Password box.

g.

Modify the interval between VAM packet retransmissions in the Retransmission Interval box.
The default interval is 5 seconds.

h.

Modify the number of the tunnel interface.
This setting corresponds to the CLI command interface tunnel number.

i.

Select a tunnel source interface from the Tunnel Source Interface list.
The Tunnel Source Interface list displays the interfaces that IVM obtains from the spoke device

j.

Redistribute routes from the following routing protocols:

Static—Select this option to redistribute static routes to the routing protocol used by DVPN.
This setting corresponds to the CLI command import-route static.

BGP—Select this option to redistribute BGP routes to OSPF used by DVPN. This setting
corresponds to the CLI command import-route bgp.

RIP—Select this option to redistribute the RIP routes of one or all RIP processes to the routing
protocol used by DVPN. This setting corresponds to the CLI command import-route rip

process-id or import-route rip all-processes.

OSPF—Select this option to redistribute the OSPF routes of one or all OSPF processes to the
routing protocol used by DVPN. This setting corresponds to the CLI command import-route

ospf process-id or import-route ospf all-processes.

k.

Modify advanced spoke settings as described in the following section or click OK to exit the
spoke configuration page.

Modifying advanced spoke settings

This task is optional. Advanced spoke settings are inherited from the security template specified in global
DVPN settings.
To configure advanced hub settings:

1.

Click Advanced Configuration at the upper right corner.
Advanced settings are displayed at the bottom area.
The DVPN Tunnel Information area shows the following information:

{

VPN Name—Name of the DVPN, configured in global DVPN settings.

{

Routing Protocol—Routing protocol used by DVPN, which is OSPF, iBGP, or eBGP:

OSPF—Displays the OSPF process ID and area ID.

iBGP—Displays the local AS number and the cluster ID of the BGP route reflector. The cluster
ID is the same as the AS number.

eBGP—Displays the initial AS number.

2.

Modify the IPsec profile name in the IPsec Profile box.
The default IPsec profile name is profile.

3.

Modify the IKE peer name in the IKE Peer box.
The default IKE peer name is peer.

4.

Select the Plaintext or Ciphertext format for the IKE authentication key in the Key Type field.

Advertising