Esp-Keyderivation - Siemens SCALANCE S615 Configuration Manual

Simatic net industrial ethernet security command line interface
Hide thumbs Also See for SCALANCE S615:
Table of Contents

Advertisement

Security and authentication
9.3 IPsec VPN
You disable the use of the default list with the
9.3.8.7

esp-keyderivation

Description
With this command, you configure the required Diffie-Hellmann group (DH) from which a key
will be generated.
Requirement
● The default list is not used.
● You are in the IPSEC PHASE configuration mode.
cli(config-conn-phs2)#
Syntax
Call up the command with the following parameters:
esp-keyderivation {none|dhgroup <1|2|5|14|15|16|17|18>}
The parameters have the following meaning:
Parameter
none
dhgroup
Result
The Diffie-Hellmann group (DH) is configured.
402
The command prompt is as follows:
Description
No keys are exchanged and
Perfect Forward Secrecy (PFS)
is disabled
Diffie-Hellmann group (DH)
command.
no default-ciphers
Range of values / note
-
Specify the required Diffie-Hellmann
group (DH).
1
2
5
14
15
16
17
18
SCALANCE S615 Command Line Interface
Configuration Manual, 06/2015, C79000-G8976-C406-02

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents