[nsp] alternative to "l2tp security crypto-profile"

Victor Sudakov sudakov at sibptus.tomsk.ru
Wed Jan 21 02:47:37 EST 2004


Victor Sudakov wrote:
> 
> If vpdn traffic between LAC and LNS needs to be encrypted, I wonder if
> it is possible to use conventional transport mode IPSec (with crypto
> acls) between the two, instead of using the "l2tp security crypto-profile" 
> mechanism as specified in 
> http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/122newft/122t/122t4/ftl2tsec.htm
> 
> I do not have 12.2T and do not wish to migrate to it or to 12.3 yet.

I guess that is it:
http://www.cisco.com/warp/public/707/24.html

I just wonder why Cisco should have introduced crypto-profiles at all.

-- 
Victor Sudakov,  VAS4-RIPE, VAS47-RIPN


More information about the cisco-nsp mailing list