5-19
isakmp
[client|keepalive|key|
peer|policy]
Configure Internet Security Association and Key Management Protocol
(ISAKMP) policy.
•
client configuration (group) (default) – This leads to
config-crypto-
group
instance.
For more details see
Crypto - group Instance on page 7-1
.
•
keepalive <10-3600> – Sets a keepalive interval for use with remote
peers. It defines the number of seconds between DPD messages.
•
key [0|2|word] [address|hostname] – Sets a pre-shared key for remote
peer.
•
0 – Password is specified UNENCRYPTED.
•
2 – Password is encrypted with password-encryption secret
•
WORD – User provided password.
•
address – Defines shared key with IP address.
•
hostname – Defines shared key with hostname.
•
peer [address|dn|hostname] – Sets a remote peer.
•
address – The IP address acts as an identity of remote peer.
•
dn – The identity of remote peer is Distinguished Name.
•
hostname – The identity of remote peer is hostname.
•
policy <1-10000> – Set policy for an ISAKMP protection suite.
key
[export|generate|import|
zeroize]
Authentication key management.
•
export rsa<name> URL [tftp|ftp] – Exports a keypair related configuration.
•
generate rsa<name> <1024-2048> – Generates a keypair.
•
<1024-2048> – Size of keypair in bit.
•
import rsa<name> URL [tftp|ftp] – Imports keypair related configuration.
•
zeroize rsa<name> – Deletes a keypair.
•
rsa<identifier> – RSA keypair identifier associated with keypair.
•
URL – URL for sending the key to. It can be one of the following:
•
tftp://<IP>/path/file (or)
•
ftp://<user>:<passwd>@<IP>/path/file
map <name>
<sequence> [ipsec-
isakmp | ipsec-manual]
(dynamic)
Enter a crypto map.
For more details see
Crypto - map Instance on page 10-1
.
•
name <name> – Name of the crypto map entry not exceeding 32
character.
•
<1-1000> – Sequence to insert into crypto map entry.
•
ipsec-isakmp – IPSEC w/ISAKMP.
•
ipsec-manual – IPSEC w/manual keying.
•
dynamic – Dynamic map entry (remote VPN configuration) for XAUTH
with mode-config or ipsec-l2tp configuration.
Содержание RFS7000 Series
Страница 1: ... RFS7000 Series RF Switch CLI Reference Guide ...
Страница 10: ...x RFS7000 Series CLI Reference Guide ...
Страница 30: ...Overview 1 10 ...
Страница 150: ...Overview 3 16 RFS7000 show management Mgmt Interface vlan1 Management access permitted via any vlan interface RFS7000 ...
Страница 196: ...Overview 4 46 ...
Страница 270: ...Overview 5 74 ...
Страница 284: ...Overview 6 14 ...
Страница 294: ...Overview 7 10 ...
Страница 304: ...Overview 8 10 ...
Страница 308: ...Overview 9 4 ...
Страница 338: ...Overview 11 36 ...
Страница 366: ...Overview 12 28 ...
Страница 380: ...Overview 13 14 ...
Страница 404: ...Overview 15 2 terminal Sets terminal line parameters page 15 14 Command Description Ref ...
Страница 434: ...Overview 16 18 ...
Страница 466: ...Overview 17 32 ...
Страница 474: ...Overview 18 8 ...
Страница 504: ...Overview 19 30 ...
Страница 572: ...Overview 20 68 ...
Страница 581: ...21 9 new show alarm log count all new acknowledged severity to limit 1 65535 RFS7000 config sole ...
Страница 584: ...Overview 21 12 ...
Страница 586: ...A 2 RFS7000 Series CLI Reference Guide ...
Страница 587: ......
Страница 588: ...MOTOROLA INC 1303 E ALGONQUIN ROAD SCHAUMBURG IL 60196 http www motorola com 72E 103891 01 Revision A January 2008 ...