Cisco Cisco 4G LTE Enhanced High-Speed WAN Interface Cards for Europe

Page of 63
 
 
© 2014 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. 
Page 23 of 63 
crypto ipsec transform-set strong esp-3des esp-md5-hmac 
!IPsec (Phase 2) policy for actual data encryption/integrity 
crypto ipsec profile cisco 
 set security-association lifetime seconds 86400 
 set transform-set strong 
!IPsec Profile to be applied dynamically to the GRE over IPsec tunnels 
ip dhcp excluded-address 10.3.0.254 
ip dhcp pool cdmapool 
   network 10.3.0.0 255.255.0.0 
   dns-server 68.28.58.11 
   default-router 10.3.0.254 
chat-script lte "" "AT!CALL1" TIMEOUT 20 "OK" 
interface Tunnel0 
 ip address 192.168.10.3 255.255.255.0 
 no ip redirects 
 ip mtu 1440 
 ip nhrp map multicast dynamic 
 ip nhrp map multicast 20.20.241.234 
 ip nhrp map 192.168.10.1 20.20.241.234 
 ip nhrp network-id 1 
 ip nhrp nhs 192.168.10.1 
 ip nhrp registration no-unique 
 ip nhrp cache non-authoritative 
tunnel source cellular 0/1/0 
 tunnel mode gre multipoint 
 tunnel key 0 
 tunnel protection ipsec profile Cisco 
!GRE tunnel template which will be applied to all dynamically created 
!GRE tunnels 
interface FastEthernet0/2/0