Root level
command
First level
command
Second level
command
Description
crypto ipsec
nat-
transparency
udp-
encapsulation
Re-enable NAT Traversal if it
was disabled
crypto ipsec
transform-set
Enter the IKE phase 2 (IPSec)
transform-set context and
create or edit IPSec
parameters for the VPN tunnel
mode
Set security-association
lifetime
set pfs
Specify whether each IKE
phase 2 negotiation will employ
PFS and, if yes, which Diffie-
Hellman group to employ
set
security-
association
lifetime
Set the IKE phase 2 (IPSec) SA
lifetime
crypto isakmp
invalid-spi-
recovery
Enable invalid SPI recovery
(default setting)
crypto isakmp
nat keepalive
Re-enable NAT Traversal
keepalive if it was disabled, and
configure the keepalive
interval. This command keeps
the NAT devices tables
updated.
crypto isakmp
peer
Enter the crypto ISAKMP peer
context and create or edit an
ISAKMP peer
continuous-
channel
Enable continuous-channel
IKE, which keeps the IKE
phase1 session always up and
running, even if there is no
traffic
description
Enter a description for the
ISAKMP peer
initiate
mode
Specify which IKE Phase-1
mode to use when
IPSec VPN
Administering Avaya G430 Branch Gateway
October 2013 551
Summary of Contents for G430
Page 1: ...Administering Avaya G430 Branch Gateway Release 6 3 03 603228 Issue 5 October 2013 ...
Page 12: ...12 Administering Avaya G430 Branch Gateway October 2013 ...
Page 246: ...VoIP QoS 246 Administering Avaya G430 Branch Gateway October 2013 Comments infodev avaya com ...
Page 556: ...IPSec VPN 556 Administering Avaya G430 Branch Gateway October 2013 Comments infodev avaya com ...