282
IPSec Commands
E-DOC-CTC-20040216-0002 v1.0
ipsec peer config
Configure an existing peer IPSec gateway profile. Before being able to configure a profile, it must be added via the
command
ipsec peer add
.
SYNTAX:
where:
ipsec peer config
peer = <>
[addr = <ip-address>]
[localid = <Identity : address, range or id string>]
[remoteid = <Identity : address, range or id string>]
[auth = <{preshared|cert|cert_or_shared}>]
[secret = <password>]
[xauthuser = <quoted string>]
[xauthpass = <password>]
[descriptor = <{def_ike}>]
peer
The name of the peer IPSec gateway profile to configure.
REQUIRED
addr
The IP address of the remote IPSec peer, often referred to as the
black IP address of the peer IPSec gateway.
Use
0
to match any address.
OPTIONAL
localid
The ID by which the peer gate identifies this gate.
For convenience, use the local gate's red IP address, IP address range
or DN (in case of certificates).
Do not specify
localid
to allow any address.
OPTIONAL
remoteid
The ID of the peer gate.
For convenience, use the remote gate's red IP address, IP address
range or DN (in case of certificates).
Do not specify
remoteid
to allow any address.
OPTIONAL
auth
The authentication method. Choose between:
•
preshared:
In case a shared secret, i.e. a fixed password, is used.
Specify the shared secret via the secret parameter.
•
cert:
In case of certificates.
•
cert_or_preshared:
In case both authentication methods (certificates and a shared
secret) are allowed. Authentication via certificates is favoured
in case both are offered.
OPTIONAL
secret
For secret based authentication, the secret.
OPTIONAL
xauthuser
When using X-AUTH , the X-AUTH username.
OPTIONAL
xauthpass
When using X-AUTH , the X-AUTH password.
OPTIONAL
descriptor
The Phase 1 ISAKMP security descriptor to be used.
For a list of available descriptors, use the command
ipsec descriptor
list
.
If not specified, the default available Phase 1 descriptor def_ike is
used.
OPTIONAL
Summary of Contents for SpeedTouch 608
Page 1: ...SpeedTouch 608 Business DSL Routers CLI Reference Guide Release R4 2 7 600 SERIES...
Page 2: ......
Page 3: ...SpeedTouch 608 CLI Reference Guide Release R4 2 7...
Page 66: ...64 Bridge Commands E DOC CTC 20040216 0002 v1 0...
Page 84: ...82 Config Commands E DOC CTC 20040216 0002 v1 0...
Page 126: ...124 DHCP Commands E DOC CTC 20040216 0002 v1 0...
Page 170: ...168 ETHoA Commands E DOC CTC 20040216 0002 v1 0...
Page 234: ...232 IPoA Commands E DOC CTC 20040216 0002 v1 0...
Page 244: ...242 IPQoS Commands E DOC CTC 20040216 0002 v1 0...
Page 356: ...354 Phonebook Commands E DOC CTC 20040216 0002 v1 0...
Page 372: ...370 PPPoA Commands E DOC CTC 20040216 0002 v1 0...
Page 394: ...392 PPPoE Commands E DOC CTC 20040216 0002 v1 0...
Page 410: ...408 QoSBook Commands E DOC CTC 20040216 0002 v1 0...
Page 436: ...434 Software Commands E DOC CTC 20040216 0002 v1 0...
Page 444: ...442 Switch Commands E DOC CTC 20040216 0002 v1 0...
Page 454: ...452 System Commands E DOC CTC 20040216 0002 v1 0...
Page 460: ...458 Systemlog Commands E DOC CTC 20040216 0002 v1 0...
Page 468: ...466 UPnP Commands E DOC CTC 20040216 0002 v1 0...
Page 488: ...486 Supported Key Names E DOC CTC 20040216 0002 v1 0...
Page 489: ......