data:image/s3,"s3://crabby-images/32423/324239db4536f771e7f7df81853bed396f5e8ba5" alt="HP 5500 EI series Configuration Manual Download Page 347"
336
[RouterB] ripng 1
[RouterB-ripng-1] quit
[RouterB] interface ethernet 1/1
[RouterB-Ethernet1/1] ripng 1 enable
[RouterB-Ethernet1/1] quit
[RouterB] interface ethernet 1/2
[RouterB-Ethernet1/2] ripng 1 enable
[RouterB-Ethernet1/2] quit
# Configure Router C.
<RouterC> system-view
[RouterC] ripng 1
[RouterC-ripng-1] quit
[RouterC] interface ethernet 1/1
[RouterC-Ethernet1/1] ripng 1 enable
[RouterC-Ethernet1/1] quit
3.
Configure RIPng IPsec profiles:
# On Router A, create an IPsec transform set named
protrf1
, and set the encapsulation mode to
transport mode, the security protocol to ESP, the encryption algorithm to 3DES, and authentication
algorithm to MD5. Create an IPsec profile named
profile001
, specify the manual mode for it,
reference IPsec transform set
protrf1
, and set the SPIs of the inbound and outbound SAs to
256
and
the keys for the inbound and outbound SAs using ESP to
abc
.
[RouterA] ipsec transform-set protrf1
[RouterA-ipsec-transform-set-protrf1] esp encryption-algorithm 3des-cbc
[RouterA-ipsec-transform-set-protrf1] esp authentication-algorithm md5
[RouterA-ipsec-transform-set-protrf1] encapsulation-mode transport
[RouterA-ipsec-transform-set-protrf1] quit
[RouterA] ipsec profile profile001 manual
[RouterA-ipsec-profile-profile001-manual] transform-set protrf1
[RouterA-ipsec-profile-profile001-manual] sa spi inbound esp 256
[RouterA-ipsec-profile-profile001-manual] sa spi outbound esp 256
[RouterA-ipsec-profile-profile001-manual] sa string-key inbound esp simple abc
[RouterA-ipsec-profile-profile001-manual] sa string-key outbound esp simple abc
[RouterA-ipsec-profile-profile001-manual] quit
# On Router B, create an IPsec transform set named
protrf1
, and set the encapsulation mode to
transport mode, the security protocol to ESP, the encryption algorithm to 3DES, and authentication
algorithm to MD5. Create an IPsec profile named
profile001
, specify the manual mode for it,
reference IPsec transform set
protrf1
, and set the SPIs of the inbound and outbound SAs to
256
and
the keys for the inbound and outbound SAs using ESP to
abc
.
[RouterB] ipsec transform-set protrf1
[RouterB-ipsec-transform-set-protrf1] esp encryption-algorithm 3des-cbc
[RouterB-ipsec-transform-set-protrf1] esp authentication-algorithm md5
[RouterB-ipsec-transform-set-protrf1] encapsulation-mode transport
[RouterB-ipsec-transform-set-protrf1] quit
[RouterB] ipsec profile profile001 manual
[RouterB-ipsec-profile-profile001-manual] transform-set protrf1
[RouterB-ipsec-profile-profile001-manual] sa spi inbound esp 256
[RouterB-ipsec-profile-profile001-manual] sa spi outbound esp 256
[RouterB-ipsec-profile-profile001-manual] sa string-key inbound esp simple abc