SROS Command Line Interface Reference Guide
Crypto Map IKE Command Set
5991-2114
© Copyright 2007 Hewlett-Packard Development Company, L.P.
1238
set transform-set
<setname1 - setname6>
Use the
set transform-set
command to assign up to six transform sets to a crypto map. Use the
no
form of
this command to remove an assigned transform set. Refer to
crypto ipsec transform-set <setname>
on page 350 for information on defining transform sets.
Syntax Description
<setname>
Assign up to six transform-sets to this crypto map by listing the set names,
separated by a space.
Default Values
By default, there is no transform set assigned to the crypto map.
Functional Notes
Crypto map entries do not directly contain the transform configuration for securing data. Instead, the crypto
map is associated with transform sets which contain specific security algorithms.
If no transform set is configured for a crypto map, then the entry is incomplete and will have no effect on
the system.
Usage Examples
The following example first creates a transform set (
Set1
) consisting of two security algorithms (up to three
may be defined), and then assigns the transform set to a crypto map (
Map1
):
ProCurve(config)#
crypto ipsec transform-set Set1 esp-3des esp-sha-hmac
ProCurve(cfg-crypto-trans)#
exit
ProCurve(config)#
crypto map Map1 1 ipsec-ike
ProCurve(config-crypto-map)#
set transform-set Set1