150 IPsec VPN configuration
Table 74
Variable definitions
Variable
md5
sha1
Configuring IKE lifetime for remote access VPN
Configure the lifetime of the remote access IKE SA. When the SA expires, it
is replaced by a new negotiated SA or terminated.
Procedure steps
Step
1
2
3
4
5
6
Copyright © 2007, Nortel Networks
.
Value
A 128-bit message digest-RFC 1321
Secure Hash Standard: A 160-bit message
digest-NIST,FIPS PUB 180-1
Action
To enter the configuration mode, enter:
configure terminal
To specify crypto configuration for IPsec and IKE, enter:
crypto
To specify configuration of remote access IKE policies, enter:
dynamic
To specify the remote access IKE policy to configure, enter:
ike policy <policy-name> {modecfg-group | l2tp-group}
To specify the IKE proposal, enter:
proposal <1-5>
To configure the lifetime, enter:
lifetime {kilobytes <300-4194303> | seconds
<300-864000>}
Nortel Secure Router 4134
Security — Configuration and Management
NN47263-600 01.02 Standard
10.0 3 August 2007
—End—
—End—