Ricoh MP 2553 Series Read Me First page 519

Mp 2553/3053/3353 series
Hide thumbs Also See for MP 2553 Series:
Table of Contents

Advertisement

Tunnel end point setting
msh> ipsec ike {1|2|3|4|default} tunneladdr "beginning IP address" "ending IP
address"
• Enter the separate setting number [1-4] or [default] and specify the tunnel end point beginning
and ending IP address.
• Not specifying either the beginning or ending address displays the current setting.
IKE partner authentication method setting
msh> ipsec ike {1|2|3|4|default} auth {psk|rsasig}
• Enter the separate setting number [1-4] or [default] and specify the authentication method.
• Specify [psk] to use a shared key as the authentication method. Specify [rsasig] to use a
certificate at the authentication method.
• You must also specify the PSK character string when you select [psk].
• Note that if you select "Certificate", the certificate for IPsec must be installed and specified
before it can be used. To install and specify the certificate use Web Image Monitor.
PSK character string setting
msh> ipsec ike {1|2|3|4|default} psk "PSK character string"
• If you select PSK as the authentication method, enter the separate setting number [1-4] or
[default] and specify the PSK character string.
• Specify the character string in ASCII characters. There can be no abbreviations.
ISAKMP SA (phase 1) hash algorithm setting
msh> ipsec ike {1|2|3|4|default} ph1 hash {md5|sha1|sha256|sha384|sha512}
• Enter the separate setting number [1-4] or [default] and specify the ISAKMP SA (phase 1)
hash algorithm.
• Not specifying the hash algorithm displays the current setting.
ISAKMP SA (phase 1) encryption algorithm setting
msh> ipsec ike {1|2|3|4|default} ph1 encrypt {des|3des|aes128|aes192|aes256}
• Enter the separate setting number [1-4] or [default] and specify the ISAKMP SA (phase 1)
encryption algorithm.
• Not specifying an encryption algorithm displays the current setting.
ISAKMP SA (phase 1) Diffie-Hellman group setting
msh> ipsec ike {1|2|3|4|default} ph1 dhgroup {1|2|14}
• Enter the separate setting number [1-4] or [default] and specify the ISAKMP SA (phase 1)
Diffie-Hellman group number.
• Specify the group number to be used.
• Not specifying a group number displays the current setting.
Configuring IPsec
161

Advertisement

Table of Contents
loading

Table of Contents