
308630-15.1 Rev 00
C-1
Appendix C
Configuration Examples
This appendix provides configuration examples for both automated and manual
security associations. Configuration of outbound and inbound policies is similar
for both automated and manual SAs. Review the section “
Manual Protect and
Unprotect SA Configuration” on page C-10 only if you are configuring manual
security associations.
Inbound and Outbound Policies
All unicast traffic must be defined by a security policy. Traffic traveling from a
security gateway is defined by an outbound policy; traffic traveling to a security
gateway is defined by an inbound policy. Inbound protected traffic that is
associated with an Unprotect SA configured on the interface does not require a
policy.
If you are using IKE to establish security associations, see the next section,
Automated SA (IKE) Policy Examples
.” If you are manually configuring security
associations, see “
Manual SA Policy Examples” on page C-5.
Komentarze do niniejszej Instrukcji