Nortel Networks BCM50a Network Router User Manual


 
212 Chapter 13 VPN
N0115790
The two BCM50a Integrated Routers shown in Table 51 can complete negotiation
and establish a VPN tunnel.
The two BCM50a Integrated Routers shown in Table 52 cannot complete their
negotiation because the Local ID type of BCM50a Integrated Router B is IP, but
the Peer ID type in BCM50a Integrated Router A is set to E-mail. An “ID
mismatched” message displays in the IPSEC LOG.
My IP Address
My IP Address is the WAN IP address of the BCM50a Integrated Router. The
BCM50a Integrated Router has to rebuild the VPN tunnel if the My IP Address
changes after setup.
The following applies if this field is configured as 0.0.0.0:
The BCM50a Integrated Router uses the current BCM50a Integrated Router
WAN IP address (static or dynamic) to set up the VPN tunnel.
Table 51 Matching ID type and content configuration example
BCM50a Integrated Router A BCM50a Integrated Router B
Local ID type: E-mail Local ID type: IP
Local ID content: tom@yourcompany.com Local ID content: 1.1.1.2
Peer ID type: IP Peer ID type: E-mail
Peer ID content: 1.1.1.2 Peer ID content:
tom@yourcompany.com
Table 52 Mismatching ID Type and Content Configuration Example
BCM50a Integrated Router A BCM50a Integrated Router B
Local ID type: IP Local ID type: IP
Local ID content: 1.1.1.10 Local ID content: 1.1.1.10
Peer ID type: E-mail Peer ID type: IP
Peer ID content: aa@yahoo.com Peer ID content: N/A