Administrator Guide

Table Of Contents
Example 4: Tunnel Mode (Host-to-Gateway) using PSK with Cisco ASA Conguration
For information regarding connectivity considerations, limitations, and requirements for the various IPsec congurations, see IPsec
Performance Considerations.
Example 1: Transport Mode (Host-to-Host) with PSK and IPv4
Figure 10. Transport Mode (Host-to-Host) with Certicates or PSK illustrates a transport mode IPsec conguration in which one
host is using IPv4 and PSK and another host is using IPv6 and certicates. Either IKEv1 or IKEv2 can be used in this conguration if
supported by the host, but the example shown uses IKEv1.
Figure 10. Transport Mode (Host-to-Host) with
Certicates or PSK
iSCSI Initiator Conguration
In the example shown in Figure 10. Transport Mode (Host-to-Host) with Certicates or PSK, the host systems' iSCSI initiators are
congured using the Microsoft iSCSI Initiator. The following tables show how the initiator should be congured for IPv4 and IPv6
connections.
Table 18. iSCSI Initiator Conguration (IPv4) lists how the Microsoft iSCSI Initiator should be congured for the IPv4 connection
shown in Figure 10. Transport Mode (Host-to-Host) with Certicates or PSK.
Table 18. iSCSI Initiator Conguration (IPv4)
Setting IPv4 Value
Rule Name ToPSA_IPSEC_IPv4_CERT_IKEv1
Enabled? Yes
Proles Domain,Private,Public
Mode Transport
Endpoint1 10.125.56.10/32
Endpoint2
10.122.56.2/32
10.125.56.3/32
76
About Group-Level Security