Nortel Secure 4134 Configuration page 125

Security — configuration and management
Hide thumbs Also See for Secure 4134:
Table of Contents

Advertisement

Table 50
Variable definitions
Variable
pre-shared-key
dss-signature
rsa-signature
Configuring DH group for IKE proposal
Configure the IKE Diffie-Hellman group for key exchange between the
peers. This specifies the type of Diffie-Hellman prime modulus group that
IKE uses for the key exchange.
Procedure steps
Step
1
2
3
4
5
Table 51
Variable definitions
Variable
group1
Copyright © 2007, Nortel Networks
.
Value
Authentication using a pre-shared key, derived out
of band.
Authentication using Digital Signature Standard
Authentication using RSA Signature
Action
To enter the configuration mode, enter:
configure terminal
To specify crypto configuration for IPsec and IKE, enter:
crypto
To specify the IKE policy to configure, enter:
ike policy <policy-name> <peer-address>
To select the IKE proposal to configure, enter:
proposal <priority>
To configure DH group for IKE proposal, enter:
dh-group {group1 | group2 | group5}
Value
768-bit. RFC 2409.
Nortel Secure Router 4134
Security — Configuration and Management
NN47263-600 01.02 Standard
10.0 3 August 2007
Configuring IKE for site-to-site VPN 125
—End—

Advertisement

Table of Contents
loading

Table of Contents