CHAPTER 5. IPSEC
Default proposal created with priority1-des-sha1-pre_shared-g1
Key String has to be configured by the user
Default ipsec proposal 'sales' added with priority1-3des-
sha1-tunnel
Router/configure/crypto/dynamic/ike/policy sales# remote-id
email mike@abc-corp.com
Router/configure/crypto/dynamic/ike/policy sales# key
secretkeyforsales
Router/configure/crypto/dynamic/ike/policy sales# proposal 1
Router/configure/crypto/dynamic/ike/policy sales/proposal 1#
encryption-algorithm 3des-cbc
Router/configure/crypto/dynamic/ike/policy sales/proposal 1#
exit
Router/configure/crypto/dynamic/ike/policy sales# client
configuration
Router/configure/crypto/dynamic/ike/policy sales/client/
configuration# address-pool 1 20.1.1.100 20.1.1.150
Router/configure/crypto/dynamic/ike/policy sales/client/
configuration# exit
Router/configure/crypto/dynamic/ike/policy sales# exit
Router/configure/crypto/dynamic# exit
5.
Display dynamic IKE policies.
Router# show crypto dynamic ike policy all
Policy Remote-id
Address-Pool
sales U david@abc-...
1 S 20.1.1.100
E 20.1.1.150
298
Mode
Transform
Aggressive P1 pre-g1-3des-sha1
© SAMSUNG Electronics Co., Ltd.