! ! Century Systems NXR-230 Series ver 5.26.11 (build 5/14:55 09 03 2016) ! hostname NXR_A1 telnet-server enable http-server enable ! ! ! ! ! ! ipv6 forwarding fast-forwarding enable ! ppp account username test1@example.jp password test1pass ! ! ipsec local policy 1 address ip ! ! ipsec isakmp policy 1 description NXR_B_M authentication pre-share ipseckey1 keepalive 30 3 periodic clear hash sha256 encryption aes128 group 5 isakmp-mode aggressive remote address ip any remote identity fqdn nxrb_m local policy 1 netevent 2 disconnect ! ! ipsec tunnel policy 1 description NXR_B_M negotiation-mode responder set transform esp-aes128 esp-sha256-hmac set pfs group5 set key-exchange isakmp 1 match address ipsec_acl ! ! interface loopback 0 ip address 10.10.0.1/32 ! interface tunnel 1 no ip address ip tcp adjust-mss auto tunnel mode ipsec ipv4 tunnel protection ipsec policy 1 ! interface ppp 0 ip address 10.10.10.1/32 ip tcp adjust-mss auto ip access-group in ppp0_in ip masquerade ip spi-filter ppp username test1@example.jp ipsec policy 1 ! interface ethernet 0 ip address 192.168.10.1/24 no ip redirects vrrp ip 1 address 192.168.10.254 vrrp ip 1 priority 254 vrrp ip 1 timers advertise 5 vrrp ip 1 netevent 1 priority 50 ! interface ethernet 1 no ip address pppoe-client ppp 0 ! interface ethernet 2 no ip address ! router bgp 65000 network 192.168.10.0/24 neighbor 10.10.0.2 remote-as 65100 neighbor 10.10.0.2 ebgp-multihop 255 neighbor 10.10.0.2 update-source loopback 0 neighbor 10.10.0.2 timers 30 90 ! dns service enable ! syslog local enable ! ! ! system led ext 0 signal-level mobile 0 ! ! ! ! track 1 interface ppp 0 initial-timeout 30 track 2 interface ethernet 0 ! ! ip route 192.168.20.0/24 192.168.10.2 30 ip route 10.10.0.2/32 tunnel 1 ip route 10.10.0.2/32 null 254 ip route 0.0.0.0/0 ppp 0 ! ip access-list ppp0_in permit any 10.10.10.1 udp 500 500 ip access-list ppp0_in permit any 10.10.10.1 50 ! ipsec access-list ipsec_acl ip any any ! ! ! end