Fabric OS Command Reference
589
53-1001764-01
policy
2
AES-128
Advanced encryption standard, 128-bit key.
AES-256
Advanced encryption standard, 256-bit key.
-auth
algorithm
Specifies the authentication algorithm. The default is SHA-1. Algorithms include
the following:
SHA-1
Secure hash algorithm.
MD5
Message digest 5.
AES-XCBC
Advanced encryption standard. Valid only with IPSec.
-pfs
value
Specifies the perfect forward secrecy. This operand is valid only with IKE policies.
Values are on (default) or off.
-dh
group
Specifies the Diffie-Hellman group used in PFS negotiation. This operand is valid
only with IKE policies. The default is 1. Values include the following:
1
Fastest as it uses 768 bit values, but least secure.
14
Slowest as it uses 2048 bit values, but most secure.
-seclife
seconds
Security association lifetime in seconds. A new key is renegotiated before the
specified length of time expires. The valid range for
seconds
is 28800 to
250000000 or 0. The default is 28800.
EXAMPLES
To create a new policy:
switch:admin>
policy --create ike 10 -enc 3des -auth md5
The following policy has been set:
IKE policy 10
-----------------------------------------
Authentication Algorithm: MD5
Encryption: 3DES
Perfect Forward Secrecy: 0
Diffie-Hellman Group: 1
SA Life (seconds): 28800
To display a policy setting:
switch:admin>
policy --show ipsec 1
IPSec policy 1
-----------------------------------------
Authentication Algorithm: SHA-1
Encryption: 3DES
SA Life (seconds): 28800
Содержание Fabric OS v7.0.1
Страница 1: ...53 1002447 01 15 December 2011 Fabric OS Command Reference Supporting Fabric OS v7 0 1 ...
Страница 6: ...vi Fabric OS Command Reference 53 1002447 01 ...
Страница 30: ...4 Fabric OS Command Reference 53 1002447 01 Using the command line interface 1 ...
Страница 118: ...92 Fabric OS Command Reference 53 1001764 01 ceePortLedTest 22 ceePortLedTest DESCRIPTION See portLedTest SEE ALSO None ...
Страница 270: ...244 Fabric OS Command Reference 53 1001764 01 exit 22 exit DESCRIPTION See logout SEE ALSO None ...
Страница 1132: ...1106 Fabric OS Command Reference 53 1002447 01 General Fabric OS commands and permissions A ...