Ipsec Configuration Example - 3Com 3032 Configuration Manual

3com 3032: user guide
Hide thumbs Also See for 3032:
Table of Contents

Advertisement

IPSec Configuration
Example
Creating an SA Manually
Displaying and Debugging the crypto card
Use the debugging, reset and display command in all views.
Table 655 Display and Debug NDEC Card
Operation
Display the detailed information of crypto
cards (applicable to crypto cards)
Display all established Security Association
on crypto card (applicable to crypto card)
Display a specified Security Association on
crypto card (applicable to crypto card)
Display statistical information of the
security packets processing on crypto card
(applicable to crypto card)
Display current operating status of crypto
card (applicable to crypto card)
Display current operating logging of
crypto card (applicable to crypto card)
Display version number of crypto card
(applicable to crypto card)
Delete all established Security Association
(applicable to crypto card)
Delete the specified Security Association
on crypto card (applicable to crypto card)
Clear the statistical information of security
packets on crypto card (applicable to
crypto card)
Clear all the logging information on the
crypto card (applicable to crypto cards)
Enable the debugging of information,
packets, SA, command, error and other
information (applicable to crypto cards)
Enable the debugging of the main
software on the crypto card (applicable to
crypto cards)
The following sections demonstrate the following IPSec configurations:
Creating an SA Manually
Creating an SA in IKE Negotiation Mode
Encrypting, Decrypting, and Authenticating NDEC Cards
Establish a security tunnel between Router-A and Router-B to perform security
protection for the data streams between PC-A represented subnet (10.1.1.x) and
PC-B represented subnet (10.1.2.x). The security protocol adopts ESP protocol,
algorithm adopts DES, and authentication algorithm adopts sha1-hmac-96.

IPSec Configuration Example

Command
display encrypt-card details [
slot-id ]
display encrypt-card ipsec sa all [
slot-id ]
display encrypt-card ipsec sa
parameters remote-address protocol
spi-number
display encrypt-card statistic [
slot-id ]
display encrypt-card status [ slot-id
]
display encrypt-card syslog [ slot-id
]
display encrypt-card version [
slot-id ]
reset encrypt-card sa all [ slot-id ]
reset encrypt-card sa parameters
remote-address protocol spi-number
reset encrypt-card statistic [
slot-id ]
reset encrypt-card syslog [ slot-id ]
debugging encrypt-card { all | packet
| sa | command | error | misc } [
slot-id ]
debugging encrypt-card host { all |
packet | sa | command | error | misc
}
577

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

303430333035304030413036 ... Show all

Table of Contents