D-Link DI-1750 Reference Manual page 369

Hide thumbs Also See for DI-1750:
Table of Contents

Advertisement

Command
crypto map map-name seq-num
ipsec-manual
match address access-list-name
set peer ip-address
set
transform-set-name
set security-association inbound
ah spi hex-key-data
set security-association outbound
ah spi hex-key-data
set security-association inbound
esp
spi
hex-key-data
hex-key-data]
set security-association outbound
esp
[cipher
spi
[authenticator hex-key-data]
exit
[DEFAULT@Router /config/]#crypto
Key Word:
U(undo)
D(default) Q(quit)
(00)dynamic-map
(01)ipsec
Configure IPSEC policy
(02)isakmp
(03)map
Please Input the code of command to be excute(0-3): 3
Key Word:
Q(quit)
(00)WORD
Please Input the code of command to be excute(0-0): 0
Please input a string:dlink (Input crypto map name)
Key Word:
Q(quit)
(00)<0-65535>
(01)local-address
Please Input the code of command to be excute(0-1): 0
Please input a digital number:100 (Input Sequence Value)
Key Word:
Q(quit)
Model Name
Specifies the crypto map entry to create (or
modify). Perform this command into the crypto map
configuration mode.
Configure an IPSec access list. This access list
determines which traffic should be protected by
IPSec and which traffic should not be protected by
IPSec security in the context of this crypto map
entry.
Specifies the address of IPSec peer. This is the
address to which IPSec protected traffic should be
forwarded.
Specifies the transform set. (Only one transform
transform-set
set can be specified for ipsec-manual crypto map
entries. For ipsec-isakmp crypto map entries, no
more than six transform sets can be specified.)
Sets the AH Security Parameter Indexes (SPIs)
and keys to apply to inbound and outbound
protected traffic if the specified transform set
includes the AH protocol. This command manually
specifies the AH security association to be used
with protected traffic.
Sets the ESP Security Parameter Indexes (SPIs)
[cipher
and keys to apply to inbound and outbound
][authenticator
protected traffic if the specified transform set
includes the ESP protocol. Specifies the cipher
keys if the transform set includes an ESP cipher
algorithm. Specifies the authenticator keys if the
hex-key-data]
transform set includes an ESP authenticator
algorithm. This command manually specifies the
ESP security association to be used with protected
traffic.
Exits crypto-map configuration mode and return to
global configuration mode.
Specify a dynamic crypto map template
Configure ISAKMP policy
Enter a crypto map
Crypto map name
Sequence to insert into crypto map entry
Interface to use for local address for this crypto map
- 367 -
Purpose

Advertisement

Table of Contents
loading

This manual is also suitable for:

Di-2621Di-2630Di-3660

Table of Contents