4 – Network Configuration
Managing IP Security
59263-02 A
4-15
A
Creating an Association
To create an association, enter the
Ipsec Association
Create command as shown
in the following example:
SANbox #> admin start
SANbox (admin) #> ipsec edit
SANbox (admin-ipsec) #> ipsec association create h2h-sh-sa
A list of attributes with formatting will follow.
Enter a value or simply press the ENTER key to skip specifying a value.
If you wish to terminate this process before reaching the end of the list
press 'q' or 'Q' and the ENTER key to do so.
Required attributes are preceded by an asterisk.
Value (press ENTER to not specify value, 'q' to quit):
Description (string value, 0-127 bytes) : Host-to-host: switch->host
*SourceAddress (hostname, IPv4, or IPv6 Address) : fe80::2c0:ddff:fe03:d4c1
*DestinationAddress (hostname, IPv4, or IPv6 Address) : fe80::250:daff:feb7:9d02
*Protocol (1=esp, 2=esp-old, 3=ah, 4=ah-old) : 1
*SPI (decimal value, 256-4294967295) : 333
Authentication (select an authentication algorithm)
1=hmac-md5 (16 byte key)
2=hmac-sha1 (20 byte key)
3=hmac-sha256 (32 byte key)
4=aes-xcbc-mac (16 byte key)
authentication algorithm choice : 2
*AuthenticationKey (quoted string or raw hex bytes) : "12345678901234567890"
*Encryption (select an encryption algorithm)
1=des-cbc (8 byte key)
2=3des-cbc (24 byte key)
3=null (0 byte key)
4=blowfish-cbc (5-56 byte key)
5=aes-cbc (16/24/32 byte key)
6=twofish-cbc (16-32 byte key)
encryption algorithm choice : 2
*EncryptionKey (quoted string or raw hex bytes) : "123456789012345678901234"
The security association has been created.
This configuration must be saved with the 'ipsec save' command
before it can take effect, or to discard this configuration
use the 'ipsec cancel' command.
Содержание SANbox 5800V Series
Страница 14: ...Page xiv 59263 02 A SANbox 5800V Series Stackable Fibre Channel Switch Command Line Interface Guide S Notes...
Страница 28: ...2 Command Line Interface Usage Downloading and Uploading Files 2 10 59263 02 A S Notes...
Страница 52: ...4 Network Configuration Managing IP Security 4 20 59263 02 A S Notes...
Страница 86: ...5 Switch Configuration Managing Idle Session Timers 5 34 59263 02 A S Notes...
Страница 104: ...6 Port Configuration Displaying Extended Credit Status 6 18 59263 02 A S Notes...
Страница 128: ...8 Connection Security Configuration Creating an SSL Security Certificate 8 4 59263 02 A S Notes...
Страница 154: ...11 Event Log Configuration Creating and Downloading a Log File 11 8 59263 02 A S Notes...
Страница 172: ...12 Call Home Configuration Resetting the Call Home Database 12 18 59263 02 A S Notes...
Страница 406: ...14 Command Reference Command Listing 14 226 59263 02 A S...
Страница 420: ...SANbox 5800V Series Stackable Fibre Channel Switch Command Line Interface Guide Index 14 59263 02 A S Notes...
Страница 421: ......