Sign In
Upload
Manuals
Brands
Cisco Manuals
Switch
VPN 3000
User Manuals: Cisco VPN 3000 Network Hardware
Manuals and User Guides for Cisco VPN 3000 Network Hardware. We have
1
Cisco VPN 3000 Network Hardware manual available for free PDF download: User Manual
Cisco VPN 3000 User Manual (502 pages)
Brand:
Cisco
| Category:
Switch
| Size: 6.83 MB
Table of Contents
Table of Contents
3
About this Manual
37
Prerequisites
37
Organization
37
Additional Documentation
38
Other References
39
Documentation Conventions
39
Data Formats
40
IP Addresses
40
Subnet Masks and Wildcard Masks
40
MAC Addresses
40
Hostnames
40
Text Strings
40
Filenames
40
Port Numbers
40
Contacting Cisco with Questions
41
Using the VPN 3000 Concentrator Series Manager
43
Browser Requirements
43
Javascript
43
Cookies
44
Navigation Toolbar
44
Recommended PC Monitor / Display Settings
44
Connecting to the VPN Concentrator Using HTTP
45
Installing the SSL Certificate in Your Browser
45
Installing the SSL Certificate with Internet Explorer
46
Viewing Certificates with Internet Explorer
51
Installing the SSL Certificate with Netscape
52
Reinstallation
52
First-Time Installation
52
Viewing Certificates with Netscape
57
Connecting to the VPN Concentrator Using HTTPS
59
Logging in the VPN Concentrator Manager
60
Configuring HTTP, HTTPS, and SSL Parameters
61
Understanding the VPN Concentrator Manager Window
61
Title Bar
61
Status Bar
61
Mouse Pointer and Tips
62
Top Frame (Manager Toolbar)
62
Main Tab
62
Help Tab
62
Support Tab
62
Logout Tab
63
Logged In: [Username]
63
Configuration Tab
63
Administration Tab
63
Monitoring Tab
63
Save
63
Save Needed
63
Cisco Systems Logo
64
Left Frame (Table of Contents)
64
Main Section Titles (Configuration, Administration, Monitoring)
64
Closed or Collapsed
64
Open or Expanded
64
Main Frame (Manager Screen)
64
Refresh
64
Organization of the VPN Concentrator Manager
65
Navigating the VPN Concentrator Manager
66
Configuration
67
Interfaces
69
Configuration | Interfaces
70
Interface
71
Ethernet 1 (Private), Ethernet 2 (Public), Ethernet 3 (External)
72
WAN Interface in Slot N, Port a B
72
IP Address
72
Status
72
Subnet Mask
72
Configuration | Interfaces | Power
73
Ethernet 1 (Private), Ethernet 2 (Public), Ethernet 3 (External) Module in Back-Panel Image
73
Power Supplies
73
WAN Card Slot N Module in Back-Panel Image
73
Alarm Thresholds
74
Board
74
Cpu
74
Power Supply A, B
74
Apply / Cancel
75
Configuration | Interfaces | Ethernet 1 2 3
75
Using the Tabs
75
General Parameters Tab
76
Enabled
76
IP Address
76
Subnet Mask
76
Public Interface
76
MAC Address
77
Filter
77
Speed
77
Duplex
77
RIP Parameters Tab
78
Inbound RIP
78
Outbound RIP
78
OSPF Parameters Tab
79
OSPF Enabled
79
OSPF Area ID
79
OSPF Priority
80
OSPF Metric
80
OSPF Retransmit Interval
80
OSPF Hello Interval
80
OSPF Dead Interval
80
OSPF Transit Delay
80
OSPF Authentication
81
OSPF Password
81
Apply / Cancel
81
Configuration | Interfaces | WAN Card in Slot N
82
Interface
82
Status
82
Configuration | Interfaces | WAN Card in Slot N | Port a B | Select T1/E1
83
IP Address
83
Subnet Mask
83
T1: up to 24 64-Kbps Channels
83
Configuration | Interfaces | WAN Card in Slot N | Port a B as T1 or E1
84
E1: up to 31 64-Kbps Channels
84
Using the Tabs
84
IP Parameters Tab
85
Enabled
85
IP Address
85
Subnet Mask
85
Public Interface
85
Filter
86
RIP Parameters Tab
86
Inbound RIP
87
Outbound RIP
87
OSPF Parameters Tab
88
OSPF Enabled
88
OSPF Area ID
88
OSPF Priority
89
OSPF Metric
89
OSPF Retransmit Interval
89
OSPF Hello Interval
89
OSPF Dead Interval
89
OSPF Transit Delay
89
OSPF Authentication
90
OSPF Password
90
WAN Parameters Tab
91
Line Coding
91
Line Framing
91
T1 Selections
91
E1 Selections
91
Buildout
92
Clock Source
92
Data Inversion
92
Loopback
92
Timeslots
92
Apply / Cancel
93
PPP Multilink Parameters Tab
93
Enable PPP Multilink
93
System Configuration
95
Configuration | System
95
Configuration | System | Servers
97
Servers
97
Configuration | System | Servers | Authentication
98
Add / Modify / Delete / Move / Test
99
Authentication Servers
99
Configuration | System | Servers | Authentication | Add or Modify
99
Server Type = RADIUS
100
Authentication Server
100
Server Port
100
Timeout
100
Retries
100
Server Secret
101
Verify
101
Add or Apply / Cancel
101
Server Type = NT Domain
101
Authentication Server Address
101
Server Port
102
Timeout
102
Retries
102
Domain Controller Name
102
Add or Apply / Cancel
102
Server Type = SDI
102
Authentication Server
103
Server Port
103
Timeout
103
Retries
103
Add or Apply / Cancel
103
Configuration | System | Servers | Authentication | Delete
104
Server Type = Internal Server
104
Add / Cancel
104
Configuration | System | Servers | Authentication | Test
105
OK / Cancel
105
Password
105
User Name
105
Yes / no
105
Authentication Server Test: Authentication Error
106
Authentication Server Test: Authentication Rejected Error
106
Authentication Server Test: Success
106
Continue
106
Configuration | System | Servers | Accounting
107
Accounting Servers
108
Add / Modify / Delete / Move
108
Table 5-1: RADIUS Accounting Record Attributes
108
Accounting Server
109
Configuration | System | Servers | Accounting | Add or Modify
109
Server Port
109
Timeout
109
Add or Apply / Cancel
110
Verify
110
Domain
111
Enabled
111
Primary DNS Server
111
Secondary DNS Server
111
Tertiary DNS Server
111
Apply / Cancel
112
Configuration | System | Servers | DNS
110
Retries
110
Server Secret
110
Configuration | System | Servers | DHCP
112
Timeout Period
112
Timeout Retries
112
Add / Modify / Delete / Move
113
DHCP Servers
113
Add or Apply / Cancel
114
Configuration | System | Servers | DHCP | Add or Modify
114
Configuration | System | Servers | NTP
114
DHCP Server
114
Server Port
114
Apply / Cancel
115
Configuration | System | Servers | NTP | Parameters
115
Sync Frequency
115
Add / Modify / Delete
116
Configuration | System | Servers | NTP | Hosts
116
NTP Hosts
116
Add or Apply / Cancel
117
Configuration | System | Servers | NTP | Hosts | Add or Modify
117
NTP Host
117
Address Management
119
Configuration | System | Address Management
119
Configuration | System | Address Management | Assignment
120
Use Address from Authentication Server
120
Use Client Address
120
Use DHCP
120
Apply / Cancel
121
Configuration | System | Address Management | Pools
121
IP Pool Entry
121
Use Address Pools
121
Add / Modify / Delete
122
Configuration | System | Address Management | Pools | Add or Modify
122
Range End
122
Range Start
122
Add or Apply / Cancel
123
Tunneling Protocols
125
Configuration | System | Tunneling Protocols
126
Configuration | System | Tunneling Protocols | PPTP
126
Enabled
127
Maximum Tunnel Idle Time
127
Acknowledgement Delay
128
Acknowledgement Timeout
128
Limit Transmit to Window
128
Max. Sessions/Tunnel
128
Max. Tunnels
128
Packet Processing Delay
128
Packet Window Size
128
Apply / Cancel
129
Configuration | System | Tunneling Protocols | L2TP
129
Control Retransmit Interval
130
Control Retransmit Limit
130
Control Window Size
130
Enabled
130
Max. Sessions/Tunnel
130
Max. Tunnels
130
Maximum Tunnel Idle Time
130
Apply / Cancel
131
Configuration | System | Tunneling Protocols | Ipsec
131
Hello Interval
131
Configuration | System | Tunneling Protocols | Ipsec LAN-To-LAN
132
Add / Modify / Delete
133
LAN-To-LAN Connection
133
Configuration | System | Tunneling Protocols | Ipsec LAN-To-LAN | no Public Interfaces
134
Interface
136
Configuration | System | Tunneling Protocols | Ipsec LAN-To-LAN | Add or Modify
134
Name
136
Peer
136
Authentication
137
Digital Certificate
137
Encryption
137
Preshared Key
137
IKE Proposal
138
Local Network
138
Network List
138
IP Address
139
Wildcard Mask
139
Network Autodiscovery
138
Remote Network
139
Network List
139
Wildcard Mask
140
Add or Apply / Cancel
140
Configuration | System | Tunneling Protocols | Ipsec LAN-To-LAN | Add
140
Local or Remote Network List
140
List Name
141
Network List
141
Add
142
Configuration | System | Tunneling Protocols | Ipsec LAN-To-LAN | Add | Done
142
Generate Local List
142
Configuration | System | Tunneling Protocols | Ipsec | IKE Proposals
143
Table 7-1: Cisco-Supplied Default IKE Proposals
144
Activate
145
Active Proposals
145
Add
145
Deactivate
145
Inactive Proposals
145
Move up / Move down
145
Modify
146
Authentication Mode
147
Proposal Name
147
Authentication Algorithm
148
Diffie-Hellman Group
148
Encryption Algorithm
148
Lifetime Measurement
148
Add or Apply / Cancel
149
Data Lifetime
149
Time Lifetime
149
Copy
146
Delete
146
Configuration | System | Tunneling Protocols | Ipsec | IKE Proposals | Add, Modify, or Copy
146
IP Routing
151
Configuration | System | IP Routing
152
Configuration | System | IP Routing | Static Routes
152
Add / Modify / Delete
153
Configuration | System | IP Routing | Static Routes | Add or Modify
153
Static Routes
153
Add or Apply / Cancel
154
Destination
154
Router Address
154
Interface
154
Metric
154
Network Address
154
Subnet Mask
154
Configuration | System | IP Routing | Default Gateways
155
Default Gateway
155
Metric
155
Apply / Cancel
156
Configuration | System | IP Routing | OSPF
156
Override Default Gateway
156
Tunnel Default Gateway
156
Autonomous System
157
Enabled
157
Router ID
157
Add / Modify / Delete
158
Apply / Cancel
158
Configuration | System | IP Routing | OSPF Areas
158
OSPF Area
158
Area ID
159
Area Summary
159
Configuration | System | IP Routing | OSPF Areas | Add or Modify
159
Add or Apply / Cancel
160
Configuration | System | IP Routing | DHCP
160
Enabled
160
External LSA Import
160
Apply / Cancel
161
Lease Timeout
161
Listen Port
161
Timeout Period
161
Configuration | System | IP Routing | Redundancy
162
Advertisement Interval
163
Enable VRRP
163
Group ID
163
Group Password
163
Group Shared Addresses
163
Private)
163
Role
163
Apply / Cancel
164
External)
164
Public)
164
Management Protocols
165
Apply / Cancel
166
Configuration | System | Management Protocols
165
Configuration | System | Management Protocols | FTP
166
Enable
166
Maximum Connections
166
Port
166
Configuration | System | Management Protocols | HTTP/HTTPS
167
Enable HTTP
167
Apply / Cancel
168
Configuration | System | Management Protocols | TFTP
168
Enable HTTPS
168
HTTP Port
168
HTTPS Port
168
Maximum Sessions
168
Apply / Cancel
169
Enable
169
Maximum Connections
169
Port
169
Timeout
169
Configuration | System | Management Protocols | Telnet
170
Enable Telnet
170
Enable Telnet/Ssl
170
Telnet Port
170
Apply / Cancel
171
Configuration | System | Management Protocols | SNMP
171
Maximum Connections
171
Telnet/Ssl Port
171
Apply / Cancel
172
Configuration | System | Management Protocols | SNMP Communities
172
Enable
172
Maximum Queued Requests
172
Port
172
Add / Modify / Delete
173
Community Strings
173
Add or Apply / Cancel
174
Community String
174
Configuration | System | Management Protocols | SNMP Communities | Add or Modify
174
Configuration | System | Management Protocols | SSL
174
Client Authentication
176
Encryption Protocols
176
SSL Version
176
Apply / Cancel
177
Generated Certificate Key Size
177
Events
179
Table 10-1: VPN Concentrator Event Classes
179
Event Class
179
Event Severity Level
182
Table 10-2: VPN Concentrator Event Severity Levels
182
Event Log
183
Event Log Data
183
Configuration | System | Events
183
Configuration | System | Events | General
184
Save Log on Wrap
184
Email Source Address
185
FTP Saved Log on Wrap
185
Save Log Format
185
Severity to Log
185
Syslog Format
185
Severity to Console
186
Severity to Email
186
Severity to Syslog
186
Severity to Trap
186
Table 10-3: Configuring "Well-Known" SNMP Traps
186
Apply / Cancel
187
Configuration | System | Events | FTP Backup
187
FTP Directory
187
FTP Password
187
FTP Server
187
FTP Username
187
Apply / Cancel
188
Configuration | System | Events | Classes
188
Configured Event Classes
188
Verify
188
Add / Modify / Delete
189
Configuration | System | Events | Classes | Add or Modify
189
Class Name
190
Enable
190
Severity to Console
190
Severity to Log
190
Severity to Syslog
190
Add or Apply / Cancel
191
Severity to Email
191
Severity to Trap
191
Add / Modify / Delete
192
Configuration | System | Events | Trap Destinations
192
Trap Destinations
192
Community
193
Configuration | System | Events | Trap Destinations | Add or Modify
193
Destination
193
SNMP Version
193
Add or Apply / Cancel
194
Configuration | System | Events | Syslog Servers
194
Port
194
Add / Modify / Delete
195
Configuration | System | Events | Syslog Servers | Add or Modify
195
Syslog Server
195
Syslog Servers
195
Add or Apply / Cancel
196
Configuration | System | Events | SMTP Servers
196
Facility
196
Port
196
Add / Modify / Delete / Move
197
SMTP Servers
197
Add or Apply / Cancel
198
Configuration | System | Events | SMTP Servers | Add or Modify
198
SMTP Server
198
Add / Modify / Delete
199
Email Recipients
199
Configuration | System | Events | Email Recipients
198
Configuration | System | Events | Email Recipients | Add or Modify
200
Email Address
200
Max Severity
200
Add or Apply / Cancel
201
Configuration | System | General
203
General
203
Apply / Cancel
204
Configuration | System | General | Identification
204
Contact
204
Location
204
System Name
204
Apply / Cancel
205
Configuration | System | General | Time and Date
205
Current Time
205
Enable DST Support
205
New Time
205
User Management
207
Configuration | User Management
209
Configuration | User Management | Base Group
209
Using the Tabs
209
General Parameters Tab
210
Access Hours
210
Simultaneous Logins
211
Minimum Password Length
211
Allow Alphabetic-Only Passwords
211
Idle Timeout
211
Maximum Connect Time
211
Filter
211
Primary DNS
212
Secondary DNS
212
Primary WINS
212
Secondary WINS
212
SEP Card Assignment
212
Tunneling Protocols
212
Ipsec Parameters Tab
213
Ipsec SA
213
Tunnel Type
214
Remote Access Parameters
214
Group Lock
214
Authentication
215
Mode Configuration
215
Mode Configuration Parameters
215
Banner
215
Allow Password Storage on Client
216
Split Tunneling Network List
216
Default Domain Name
217
Ipsec through NAT
217
Ipsec through NAT UDP Port
217
PPTP/L2TP Parameters Tab
218
Use Client Address
218
PPTP Authentication Protocols
218
PPTP Encryption
219
L2TP Authentication Protocols
220
L2TP Encryption
220
Apply / Cancel
221
Configuration | User Management | Groups
222
Current Groups
222
Add / Modify / Delete
223
Configuration | User Management | Groups | Add or Modify (Internal)
224
Identity Parameters Tab
224
Group Name
225
Password
225
Using the Tabs
224
Type
225
Verify
225
General Parameters Tab
226
Value / Inherit
226
Access Hours
227
Simultaneous Logins
227
Minimum Password Length
227
Allow Alphabetic-Only Passwords
227
Idle Timeout
227
Maximum Connect Time
228
Filter
228
Primary DNS
228
Secondary DNS
228
Primary WINS
229
Secondary WINS
229
SEP Card Assignment
229
Tunneling Protocols
229
Ipsec Parameters Tab
230
Value / Inherit
231
Ipsec SA
231
Authentication
232
Group Lock
232
Mode Configuration
232
Remote Access Parameters
232
Tunnel Type
232
Allow Password Storage on Client
233
Banner
233
Default Domain Name
233
Mode Configuration Parameters
233
Split Tunneling Network List
233
Ipsec through NAT
234
Ipsec through NAT UDP Port
234
PPTP/L2TP Parameters Tab
234
Value / Inherit
235
Use Client Address
235
PPTP Authentication Protocols
235
PPTP Encryption
236
L2TP Authentication Protocols
236
L2TP Encryption
237
Add or Apply / Cancel
237
Configuration | User Management | Groups | Modify (External)
238
Group Name
238
Password
238
Type
238
Verify
238
Apply / Cancel
239
Configuration | User Management | Users
239
Configuration | User Management | Users
240
Add / Modify / Delete
240
Configuration | User Management | Users | Add or Modify
240
Current Users
240
Using the Tabs
240
Group
241
Identity Parameters Tab
241
Password
241
User Name
241
Verify
241
General Parameters Tab
242
IP Address
242
Subnet Mask
242
Access Hours
243
Idle Timeout
243
Simultaneous Logins
243
Value / Inherit?
243
Filter
244
Maximum Connect Time
244
SEP Card Assignment
244
Tunneling Protocols
244
Ipsec Parameters Tab
245
Value / Inherit?
245
Store Password on Client
246
Ipsec SA
246
PPTP/L2TP Parameters Tab
247
Value / Inherit?
247
PPTP Authentication Protocols
248
Use Client Address
248
Add or Apply / Cancel
249
L2TP Authentication Protocols
249
Configuration | Policy Management | Access Hours
252
Add / Modify / Delete
253
Current Access Hours
253
Configuration | Policy Management
252
Configuration | Policy Management | Access Hours | Add or Modify
254
Name
254
Sunday - Saturday
254
Add or Apply / Cancel
255
Configuration | Policy Management | Traffic Management
255
Add / Modify / Copy / Delete
256
Configuration | Policy Management | Traffic Management | Network Lists
256
Network List
256
Configuration | Policy Management | Traffic Management | Network Lists | Add, Modify, or Copy
257
Add or Apply / Cancel
258
Generate Local List
258
List Name
258
Network List
258
Configuration | Policy Management | Traffic Management | Rules
259
Filter Rules
259
Table 13-1: Cisco-Supplied Default Filter Rules
260
Add / Modify / Copy / Delete
261
Configuration | Policy Management | Traffic Management | Rules | Add, Modify, or Copy
262
Action
264
Direction
264
Protocol or Other
264
Rule Name
264
Network List
265
Source Address
265
TCP Connection
265
Destination Address
266
IP Address
266
Network List
266
TCP/UDP Source Port
266
Wildcard-Mask
266
Port or Range
267
Add or Apply / Cancel
268
ICMP Packet Type
268
Port or Range
268
TCP/UDP Destination Port
268
Configuration | Policy Management | Traffic Management | Rules | Delete
269
Configuration | Policy Management | Traffic Management | Security Associations
269
Add / Modify / Delete
271
Ipsec Sas
271
Table 13-2: Cisco-Supplied Default Security Associations
271
Configuration | Policy Management | Traffic Management | Security Associations | Add or Modify
272
Inheritance
273
Authentication Algorithm
274
Encapsulation Mode
274
Encryption Algorithm
274
Ipsec Parameters
274
Data Lifetime
275
Lifetime Measurement
275
Perfect Forward Secrecy
275
Time Lifetime
275
Digital Certificate
276
IKE Parameters
276
IKE Peer
276
Negotiation Mode
276
Add or Apply / Cancel
277
IKE Proposal
277
Configuration | Policy Management | Traffic Management | Filters
278
Configuration | Policy Management | Traffic Management | Security Associations | Delete
278
Add Filter
280
Assign Rules to Filter
280
Filter List
280
Modify Filter
280
Table 13-3: Cisco-Supplied Default Filters
280
Configuration | Policy Management | Traffic Management | Filters | Add, Modify, or Copy
281
Copy Filter
281
Delete Filter
281
Default Action
282
Filter Name
282
Add or Apply / Cancel
283
Description
283
Fragments
283
Source Routing
283
Configuration | Policy Management | Traffic Management | Assign Rules to Filter
284
Filter Name:
284
Available Rules
285
Current Rules in Filter
285
Insert above
285
Remove
285
Assign SA to Rule
286
Configuration | Policy Management | Traffic Management | Assign Rules to Filter | Add SA to Rule
286
Done
286
Move up / Move down
286
Add SA to Rule on Filter:
287
Apply
287
Ipsec Sas
287
Apply / Cancel
288
Change SA on Rule in Filter:
288
Ipsec Sas
288
Configuration | Policy Management | Traffic Management | NAT
289
Apply / Cancel
290
Configuration | Policy Management | Traffic Management | NAT | Enable
290
Configuration | Policy Management | Traffic Management | NAT | Rules
290
Enabled
290
Add / Modify / Delete
291
NAT Rules
291
Configuration | Policy Management | Traffic Management | NAT | Rules | no Public Interfaces
292
Interface
293
IP Address
293
Private Address
293
Subnet Mask
293
Action
294
Add or Apply / Cancel
294
Configuration | Policy Management | Traffic Management | NAT | Rules | Add or Modify
292
Administration
295
Administration | Sessions
297
Refresh
297
Active LAN-To-LAN Sessions
298
Active Management Sessions
298
Active Remote Access Sessions
298
Logout All: PPTP | L2TP | Ipsec User | L2Tp/Ipsec | Ipsec/Nat | Ipsec/Lan-To-LAN
298
Session Summary Table
298
Concurrent Sessions Limit
299
Connection Name
299
IP Address
299
LAN-To-LAN Sessions Table
299
Peak Concurrent Sessions
299
Protocol, Encryption, Login Time, Duration, Actions
299
Remote Access Sessions | Management Sessions ]
299
Total Active Sessions
299
Total Cumulative Sessions
299
Administrator
300
Assigned IP Address
300
LAN-To-LAN Sessions | Management Sessions ]
300
LAN-To-LAN Sessions | Remote Access Sessions ]
300
Management Sessions Table
300
Protocol, Encryption, Login Time, Duration, Actions
300
Public IP Address
300
Remote Access Sessions Table
300
Username
300
Configuration Locked by
301
IP Address
301
Protocol, Encryption, Login Time, Duration, Actions
301
Table 14-1: Parameter Definitions for Administration | Sessions Screen
301
Administration | Sessions | Detail
302
Administration | Sessions | Detail Parameters
306
Back to Sessions
306
Refresh
306
Table 14-2: Parameter Definitions for Administration | Sessions | Detail Screens
306
Administration | Software Update
308
Current Software Revision
308
Browse
309
Software Update Progress
309
Upload
309
Software Update Error
310
Software Update Success
310
Administration | System Reboot
311
Action
312
Apply / Cancel
312
Configuration
312
When to Reboot/Shutdown
312
Address/Hostname to Ping
313
Administration | Ping
313
Continue
313
Ping / Cancel
313
Success (Ping)
313
Administration | Monitoring Refresh
314
Enable
314
Error (Ping)
314
Refresh Period
314
Administration | Access Rights
315
Administration | Access Rights | Administrators
315
Apply / Cancel
315
Group Number
316
Properties / Modify
316
Username
316
Administration | Access Rights | Administrators | Modify Properties
317
Administrator
317
Apply / Cancel
317
Enabled
317
Access Rights
318
Password
318
Verify
318
Table 14-3: Cisco-Supplied Default Administrator Rights
318
Username
318
Apply / Default / Cancel
319
Authentication
319
General
319
Snmp
319
Add / Modify / Delete / Move
320
Files
319
Administration | Access Rights | Access Control List
320
Manager Workstations
320
Administration | Access Rights | Access Control List | Add or Modify
321
IP Address
321
Priority (Modify Screen Only)
321
Access Group
322
Add or Apply / Cancel
322
Administration | Access Rights | Access Settings
322
Session Idle Timeout
322
Administration | File Management
323
Apply / Cancel
323
Encrypt Config File
323
Session Limit
323
Administration | File Management | Files
324
Date/Time
324
Filename
324
Refresh
324
Size (Bytes)
324
Total, Used, Free KB
324
Actions
325
View (Save)
325
Delete
325
Copy
325
Administration | File Management | TFTP Transfer
326
OK / Cancel
326
Action
327
Concentrator File
327
OK / Cancel
327
TFTP Server
327
TFTP Server File
327
Administration | File Management | Swap Configuration Files
326
Administration | Certificate Management
328
Error (TFTP)
328
Success (TFTP)
328
Continue
328
Administration | Certificate Management | Enrollment
330
Installing Digital Certificates on the VPN Concentrator
330
Common Name (CN)
331
Organizational Unit (OU)
331
Apply / Cancel
332
Country (C)
332
Key Size
332
Locality (L)
332
State/Province (SP)
332
Subject Alternative Name (Fully Qualified Domain Name)
332
Administration | Certificate Management | Enrollment | Request Generated
333
Administration | Certificate Management | Installation
334
Enrolling with a Certificate Authority
334
Certificate Password
335
Certificate Type
335
Verify
335
Administration | Certificate Management | Certificates
336
Apply / Cancel
336
Certificate Authorities
336
Identity Certificates
336
Local File / Browse
336
Actions / View / CRL / Delete
337
Expiration
337
SSL Certificate / [ Generate ]
337
Subject / Issuer
337
Administration | Certificate Management | Certificates | View
338
Subject
338
Certificate Usage
339
Public Key Type
339
Serial Number
339
Signing Algorithm
339
Administration | Certificate Management | Certificates | CRL
340
Back
340
CRL Distribution Point
340
MD5 Thumbprint
340
SHA1 Thumbprint
340
Subject Alternative Name (Fully Qualified Domain Name)
340
Issuer
338
Validity
340
Certificate
341
Enable CRL Checking
341
Server
341
Password
342
Apply / Cancel
342
Filter
342
Server Port
342
Update Period
342
Verify
342
Administration | Certificate Management | Certificates | Delete
343
Monitor
345
Login DN
342
Monitor | Routing Table
346
Refresh
346
Address
347
Interface
347
Mask
347
Next Hop
347
Protocol
347
Valid Routes
347
Metric
348
Monitor | Event Log
348
Client IP Address
349
Direction
349
Event Class
349
Events/Page
349
Select Filter Options
349
Severities
349
First Page
350
Last Page
350
Next Page
350
Previous Page
350
Save Log
350
Clear Log
351
Event Log Format
351
Event Sequence
351
Event Date
351
Event Time
351
Event Severity
351
Event Class / Number
352
Event Repeat
352
Event IP Address
352
Event String
352
Monitor | System Status
353
Back Panel
354
Bootcode Rev
354
Front Panel
354
RAM Size
354
Refresh
354
Software Rev
354
Up Since
354
VPN Concentrator Type
354
Active Sessions
355
CPU Utilization
355
CPU, Cage
355
Throughput
355
Monitor | System Status | Ethernet Interface
356
Refresh
356
Status
356
Rx Broadcast
357
Rx Multicast
357
Rx Unicast
357
Tx Broadcast
357
Tx Multicast
357
Tx Unicast
357
Back
358
Back
356
IP Address
356
Monitor | System Status | Dual T1/E1 WAN Slot N
358
Refresh
358
T1/E1 Statistics
358
Slot
358
Status
359
Port
359
Up Time Seconds
359
Errored Seconds
359
Severely Errored Seconds
359
Bursty Errored Seconds
359
Severely Errored Framing Seconds
360
Unavailable Seconds
360
Line Errored Seconds
360
Degraded Minutes
360
Bipolar Violations
360
Line Coding Violations
360
Path Coding Violations
360
Controlled Slips
360
Synchronous Statistics
360
Monitor | Statistics | MIB-II | IP
361
Slot
361
Port
361
Ifindex
361
Packets Received
361
Bytes Received
361
Packets Transmitted
361
Bytes Transmitted
361
Received Frame too Long
362
Transmit Frame too Long
362
Received Byte Align Errors
362
Received CRC Errors
362
Receiver Overrun Errors
362
Transmits Dropped
362
Transmit Underruns
362
Protocol
361
Status
361
Monitor | System Status | Power
363
Refresh
363
Back
363
Power Supply A, B
363
Board
364
Monitor | System Status | SEP
364
SEP Redundancy
364
V Status, 3.3V Status, 5V Status
364
Back
365
Refresh
365
Decrypted: Octets / Packets
366
DSP Code Version
366
Status
366
Encrypted: Octets / Packets
366
Hash Encrypted: Packets
366
Inbound Hash: Octets / Packets
366
Outbound Hash: Octets / Packets
366
DH Derived Secret Keys
367
DH Keys Generated
367
Drops: Packets
367
Hash Decrypted: Packets
367
Random Bytes Available
367
Random Cache Empty
367
Random Replenishments
367
Random Requests
367
DSA Digital Keys Generated
368
DSA Digital Signings
368
DSA Digital Verifications
368
RSA Decryptions: Octets / Packets
368
RSA Digital Signings
368
RSA Digital Verifications
368
RSA Encryptions: Octets / Packets
368
LED Selector Button]
369
Monitor | System Status | LED Status
369
Refresh
369
Monitor | Statistics | MIB-II | ARP Table
370
Monitor | Sessions
370
Refresh
370
Session Summary Table
370
Active LAN-To-LAN Sessions
371
Active Remote Access Sessions
371
Active Management Sessions
371
Total Active Sessions
371
Peak Concurrent Sessions
371
Concurrent Sessions Limit
371
Total Cumulative Sessions
371
LAN-To-LAN Sessions Table
371
Remote Access Sessions | Management Sessions ]
371
Connection Name
371
Protocol, Encryption, Login Time, Duration, Bytes Tx, Bytes Rx
372
IP Address
372
Remote Access Sessions Table
372
LAN-To-LAN Sessions | Management Sessions ]
372
Username
372
Public IP Address
372
Assigned IP Address
372
Management Sessions Table
373
LAN-To-LAN Sessions | Remote Access Sessions ]
373
Administrator
373
IP Address
373
Protocol, Encryption, Login Time, Duration
373
Table 15-1: Parameter Definitions for Monitor | Sessions Screen
373
Monitor | Sessions | Detail
374
Back to Sessions
378
Monitor | Sessions | Detail Parameters
378
Refresh
378
Table 15-2: Parameter Definitions for Monitor | Sessions | Detail Screens
378
Active Sessions
380
Monitor | Sessions | Protocols
380
Refresh
380
Total Sessions
380
Protocol
380
Bar Graph
381
Percentage
381
Sessions
381
Active Sessions
382
Monitor | Sessions | Seps
382
Refresh
382
Total Sessions
382
Active Sessions
383
Bar Graph
383
Monitor | Sessions | Encryption
383
Percentage
383
Refresh
383
Total Sessions
383
Bar Graph
384
Encryption
384
Percentage
384
Sessions
384
Monitor | Sessions | Top Ten Lists | Data
385
Refresh
385
Monitor | Sessions | Top Ten Lists
385
Username
385
IP Address
386
Encryption
386
Protocol
386
IP Address
387
Login Time
387
Monitor | Sessions | Top Ten Lists | Duration
387
Refresh
387
Total Bytes
387
Username
387
Encryption
388
Login Time
388
Protocol
388
Duration
389
IP Address
389
Monitor | Sessions | Top Ten Lists | Throughput
389
Protocol
389
Refresh
389
Username
389
Avg. Throughput (Bytes/Sec)
390
Encryption
390
Login Time
390
Monitor | Statistics
391
Active Tunnels
392
Maximum Tunnels
392
Monitor | Statistics | PPTP
392
Refresh
392
Total Tunnels
392
Active Sessions
393
Maximum Sessions
393
PPTP Sessions
393
Receive Octets
394
Rx Discards Control / Data
393
Rx Octets Control / Data
393
Rx Packets Control / Data
393
Total Sessions
393
Tx Octets Control / Data
393
Tx Packets Control / Data
393
Username
394
Receive Packets
394
Receive Discards
394
Receive ZLB
394
Transmit Octets
394
Transmit Packets
394
Transmit ZLB
394
ACK Timeouts
394
Monitor | Statistics | L2TP
395
Refresh
395
Active Sessions
396
Active Tunnels
396
Failed Sessions
396
Failed Tunnels
396
Maximum Sessions
396
Maximum Tunnels
396
Rx Octets Control / Data
396
Total Sessions
396
Total Tunnels
396
L2TP Sessions
397
Remote IP
397
Rx Discards Control / Data
397
Rx Packets Control / Data
397
Tx Octets Control / Data
397
Tx Packets Control / Data
397
Username
397
Flow
395
Serial
397
Receive Octets
397
Receive Discards
398
Receive Packets
398
Receive ZLB
398
Transmit Octets
398
Transmit Packets
398
Transmit ZLB
398
Monitor | Statistics | Ipsec
399
Refresh
399
IKE (Phase 1) Statistics
400
Active Tunnels
400
Total Tunnels
400
Received Bytes
400
Sent Bytes
400
Received Packets
400
Sent Packets
400
Received Packets Dropped
400
Sent Packets Dropped
400
Received Notifies
401
Sent Notifies
401
Received Phase-2 Exchanges
401
Sent Phase-2 Exchanges
401
Invalid Phase-2 Exchanges Received
401
Invalid Phase-2 Exchanges Sent
401
Rejected Received Phase-2 Exchanges
401
Rejected Sent Phase-2 Exchanges
401
Phase-2 SA Delete Requests Received
401
Phase-2 SA Delete Requests Sent
402
Initiated Tunnels
402
Failed Initiated Tunnels
402
Failed Remote Tunnels
402
Authentication Failures
402
Decryption Failures
402
Hash Validation Failures
402
System Capability Failures
402
No-SA Failures
402
Active Tunnels
403
Ipsec (Phase 2) Statistics
403
Received Bytes
403
Received Packets
403
Received Packets Dropped (Anti-Replay)
403
Sent Bytes
403
Sent Packets
403
Decryptions
404
Encryptions
404
Failed Decryptions
404
Failed Encryptions
404
Failed Inbound Authentications
404
Failed Outbound Authentications
404
Inbound Authentications
404
Outbound Authentications
404
Sent Packets Dropped
404
Monitor | Statistics | HTTP
405
No-SA Failures
405
Protocol Use Failures
405
Refresh
405
System Capability Failures
405
Total Tunnels
403
Monitor | Statistics | HTTP
405
Octets Received
405
Octets Sent
405
Active Connections
406
Max Connections
406
Monitor | Statistics | Events
406
Packets Received
406
Packets Sent
406
Monitor | Statistics | Events
407
Count of Events
407
Event Class
407
Event Number
407
Monitor | Statistics | Telnet
407
Refresh
407
Active Sessions
408
Attempted Sessions
408
Client IP Address:port
408
Inbound Octets Command
408
Inbound Octets Discarded
408
Inbound Octets Total
408
Outbound Octets Dropped
408
Outbound Octets Total
408
Successful Sessions
408
Telnet Sessions
408
Timeouts
409
Requests
409
Responses
409
Server Unreachable
409
Monitor | Statistics | DNS
409
Other Failures
409
Refresh
409
Monitor | Statistics | Accounting
410
Accepts
410
Monitor | Statistics | Authentication
410
Refresh
410
Requests
410
Retransmissions
410
Server IP Address:port
410
Bad Authenticators
411
Challenges
411
Malformed Responses
411
Pending Requests
411
Rejects
411
Timeouts
411
Unknown Type
411
Monitor | Statistics | Authentication
412
Malformed Responses
412
Monitor | Statistics | Accounting
412
Refresh
412
Requests
412
Responses
412
Retransmissions
412
Server IP Address:port
412
Bad Authenticators
413
Timeouts
413
Unknown Type
413
Inbound Packets Filtered
414
Inbound Packets Post Filter
414
Inbound Packets Pre-Filter
414
Interface
414
Outbound Packets Filtered
414
Outbound Packets Post Filter
414
Outbound Packets Pre-Filter
414
Checksum Errors
415
Monitor | Statistics | Filtering
413
Pending Requests
413
Refresh
413
Monitor | Statistics | VRRP
415
Refresh
415
Version Errors
415
Advertisement Interval Errors
416
Advertisements Received
416
Authentication Failures
416
Became Master
416
Interface: 1 (Private), 2 (Public), 3 (External)
416
Status
416
Virtual Routers
416
VRID Errors
416
Address List Errors
417
Invalid Authentication Errors
417
Invalid Type Received
417
Mismatch Authentication Errors
417
Packet Length Errors
417
Priority 0 Packets Received
417
Priority 0 Packets Sent
417
Time-To-Live Errors
417
Monitor | Statistics | SSL
418
Refresh
418
Monitor | Statistics | SSL
418
Total Sessions
418
Unencrypted Inbound Octets
418
Unencrypted Outbound Octets
418
Monitor | Statistics | DHCP
419
Lease Duration
419
Leased IP Address
419
Max Active Sessions
419
Refresh
419
Time Used
419
Allocated Addresses
420
Available Addresses
420
DHCP Server Address
420
IP Address Range: Start / End
420
Monitor | Statistics | Address Pools
420
Refresh
420
Time Left
420
Total Addresses
420
Max Allocated Addresses
421
Monitor | Statistics | MIB-II
421
Interface
422
Monitor | Statistics | MIB-II | Interfaces
422
Refresh
422
Status
422
Broadcast in
423
Broadcast out
423
Multicast in
423
Multicast out
423
Unicast in
423
Unicast out
423
Monitor | Statistics | MIB-II | TCP/UDP
424
Refresh
424
TCP Segments Received
424
TCP Segments Retransmitted
424
TCP Segments Transmitted
424
TCP Timeout Min
424
TCP Active Opens
425
TCP Attempt Failures
425
TCP Connection Limit
425
TCP Current Established
425
TCP Established Resets
425
TCP Passive Opens
425
TCP Timeout Max
425
UDP Datagrams Received
425
UDP Datagrams Transmitted
425
Monitor | Statistics | MIB-II | IP
426
Packets Received (Total)
426
Refresh
426
UDP Errored Datagrams
426
Outbound Packets Discarded
427
Outbound Packets with no Route
427
Packets Forwarded
427
Packets Received (Delivered)
427
Fragmentation Failures
428
Fragmentation Successes
428
Fragments Created
428
Fragments Needing Reassembly
428
Packets Transmitted (Requests)
428
Reassembly Failures
428
Reassembly Successes
428
Monitor | Statistics | MIB-II | RIP
429
Global Queries
429
Global Route Changes
429
Interface Address
429
Received Bad Packets
429
Received Bad Routes
430
Sent Updates
430
Refresh
429
Monitor | Statistics | MIB-II | OSPF
431
Refresh
431
Designated Routers
432
External LSA Checksum
432
External LSA Count
432
LSA Database Limit
432
Lsas Originated
432
New Lsas Received
432
Router ID
432
Version
432
Backup Designated Router
433
Designated Router
433
Interface Address
433
Interface Name
433
IP Address
433
Neighbors
433
Router ID
433
State
434
Areas
434
SPF Runs
434
Area Border Routers
434
AS Border Routers
434
Area LSA Checksum
435
Area LSA Count
435
External Lsas
435
Link State ID
435
Router ID
435
Type
435
Sequence
435
Monitor | Statistics | MIB-II | ICMP
436
Destination Unreachable Received / Transmitted
436
Errors Received / Transmitted
436
Refresh
436
Total Received / Transmitted
436
Parameter Problems Received / Transmitted
437
Redirects Received / Transmitted
437
Source Quench Received / Transmitted
437
Time Exceeded Received / Transmitted
437
Timestamp Replies Received / Transmitted
437
Timestamp Requests Received / Transmitted
437
Address Mask Replies Received / Transmitted
438
Address Mask Requests Received / Transmitted
438
Monitor | Statistics | MIB-II | ARP Table
438
Refresh
438
Action / Delete
439
Mapping Type
439
Physical Address
439
Interface
439
IP Address
439
Alignment Errors
440
Carrier Sense Errors
440
FCS Errors
440
Monitor | Statistics | MIB-II | Ethernet
440
Interface
440
Refresh
440
Deferred Transmits
441
Excessive Collisions
441
Frame too Long Errors
441
Late Collisions
441
MAC Errors: Receive
441
MAC Errors: Transmit
441
Multiple Collisions
441
Single Collisions
441
SQE Test Errors
441
Bad Version
442
Duplex
442
Monitor | Statistics | MIB-II | SNMP
442
Refresh
442
Requests Received
442
Speed (Mbps)
442
Bad Community String
443
Parsing Errors
443
Proxy Drops
443
Silent Drops
443
Accessing the CLI
445
Console Access
445
Starting the CLI
446
Telnet or Telnet/Ssl Access
446
Choosing Menu Items
447
Entering Values
447
Using the CLI
447
Specifying Configured Items
448
Navigating Quickly through the CLI
449
Using Shortcut Numbers
449
Using Back and Home
450
Getting Help Information
450
Saving the Configuration File
451
Stopping the CLI
451
Understanding CLI Access Rights
451
CLI Menu Reference
452
Main Menu
452
Configuration
452
Configuration > Interface Configuration
453
Or 1.1.3 Configuration > Interface Configuration > Configure Ethernet #1 or #2 or #3
453
Configuration > Interface Configuration > Configure Power Supplies
453
Configuration > Interface Configuration > Configure Power Supplies
454
Configuration > Interface Configuration > Configure Expansion Cards
454
Configuration > System Management
454
Configuration > System Management > Servers
455
Configuration > System Management > Address Management
455
Configuration > System Management > Tunneling Protocols
455
Configuration > System Management > IP Routing
455
Configuration > System Management > Management Protocols
456
Configuration > System Management > Event Configuration
456
Configuration > System Management > General Config
456
Configuration > User Management
456
Configuration > User Management > Base Group
457
Configuration > User Management > Groups
457
Configuration > User Management > Users
457
Configuration > Policy Management
457
Configuration > Policy Management > Access Hours
458
Configuration > Policy Management > Traffic Management
458
Administration > Administer Sessions
458
Administration > System Reboot
459
Administration > System Reboot > Schedule Reboot
459
Administration > System Reboot > Schedule Shutdown
459
Administration > Access Rights
459
Administration > Access Rights > Administrators
459
Administration > Access Rights > Access Control List
460
Administration > Access Rights > Access Settings
460
Administration > File Management
460
Administration > File Management > Swap Configuration File
460
Administration > Certificate Management
461
Administration > Certificate Management > Installation
461
Administration > Certificate Management > Certificate Authorities
461
Administration > Certificate Management > Identity Certificates
461
Administration > Certificate Management > SSL Certificate
462
Monitoring
462
Monitoring > Routing Table
462
Monitoring > Event Log
463
Monitoring > Event Log > View Event Log
463
Monitoring > System Status
463
Monitoring > System Status > View Card Status
463
Monitoring > Sessions
464
Monitoring > Sessions > View Session Statistics
464
Monitoring > Sessions > View Top Ten Lists
464
Monitoring > Sessions > View Session Protocols
464
Monitoring > Sessions > View Session Seps
465
Monitoring > Sessions > View Session Encryption
465
Monitoring > General Statistics
465
Monitoring > General Statistics > Protocol Statistics
465
Monitoring > General Statistics > Server Statistics
466
Monitoring > General Statistics > Event Statistics
466
Monitoring > General Statistics > MIB II Statistics
466
Files for Troubleshooting
467
Crash Dump File
467
Event Logs
467
Browser Back or Forward Button Displays an Incorrect Screen or Incorrect Data
468
Browser Refresh / Reload Button Logs out the Manager
468
Configuration Files
468
VPN Concentrator Manager Errors
468
Invalid Login or Session Timeout
469
Error / an Error Has Occurred While Attempting to Perform
470
You Are Using an Old Browser or Have Disabled Javascript
471
Not Allowed / You Do Not Have Sufficient Authorization
472
Microsoft Internet Explorer Script Error: no such Interface Supported
473
Not Found / an Error Has Occurred While Attempting to Access
473
Command Line Interface Errors
474
ERROR:-- Bad IP Address/Subnet Mask/Wildcard Mask/Area ID
474
ERROR:-- out of Range Value Entered. Try Again
474
ERROR:-- the Passwords Do Not Match. Please Try Again
474
LED Indicators
475
VPN Concentrator Leds (Front)
476
SEP (Scalable Encryption Processing) Module Leds (Model 3015–3080 Only)
477
VPN Concentrator Leds (Rear)
477
WAN Interface Module Leds
478
Software License Agreement of Cisco Systems, Inc
481
Limited Warranty
482
Other Licenses
483
Dhcp Client
484
Telnet Server
488
Regulatory Agency Notices
489
Notice to Users of T1 Service
489
Notice to Users of Certified Component Devices
490
Affidavit (Appendix A)
491
Advertisement
Advertisement
Related Products
Cisco Video Switch
Cisco VS-F6K-PFC4
Cisco VS-F6K-PFC4XL
Cisco VCO/4K
Cisco VPN 3002 Hardware Client Manager
Cisco VPN Client
Cisco VoIP 9951
Cisco Versatile Interface Processor (VIP6-80) (VIP6-80)
Cisco VT Camera III
Cisco Virus Blocker
Cisco Categories
Switch
IP Phone
Network Router
Wireless Access Point
Network Hardware
More Cisco Manuals
Login
Sign In
OR
Sign in with Facebook
Sign in with Google
Upload manual
Upload from disk
Upload from URL