HP ProCurve Secure Router 7203 dl Advanced Management And Configuration Manual page 485

Secure router
Hide thumbs Also See for ProCurve Secure Router 7203 dl:
Table of Contents

Advertisement

20. Assign up to six transform sets to the crypto map entry:
Syntax: set transform-set <setname1> [<setname2>] [<setname3>]
[<setname4>] [<setname5>] [<setname6>]
21. Apply the ACL to the crypto map entry:
Syntax: match address <ACL listname>
22. Set the IPSec SA lifetime (unless accepting default). You can configure it
in kilobytes, seconds, or both:
Syntax: set security-association lifetime [kilobytes <kilobytes> | seconds
<seconds>]
23. If the router is also connecting to remote sites, configure a map entry for
each site. (See "Configuring a Site-to-Site VPN" on page 8-90.) Use the
same mapname for each entry, but a different map index number.
24. Exit to the global configuration mode context. Configure a remote ID list
that contains authentication information for remote peers. If you are using
preshared keys for authentication, associate the preshared key with the
peer. You can optionally associate a peer with the IKE policy and crypto
map entry that should be used with that peer.
For the remote ID, you can specify:
any (often used for multiple mobile users):
Syntax: crypto ike remote-id any [preshared-key <preshared key>] [ike-
policy <policy number>] [crypto map <mapname> <map sequence>]
IP address:
Syntax: crypto ike remote-id address <peer A.B.C.D> [preshared-key <pre-
shared key>] [ike-policy <policy number>] [crypto map <mapname> <map
sequence>]
fully-qualified domain name (FQDN):
Syntax: crypto ike remote-id fqdn <peer FQDN> [preshared-key <preshared
key>] [ike-policy <policy number>] [crypto map <mapname> <map
sequence>]
email address:
Syntax: crypto remote-id user-fqdn <peer email address> [preshared-key
<preshared key>] [ike-policy <policy number>] [crypto map <mapname>
<map sequence>]
distinguished name (with digital certificates only):
Syntax: crypto ike remote-id asn1-dn <distinguished name> [ike-policy <pol-
icy number>] [crypto map <mapname> <map sequence>]
Virtual Private Networks
Quick Start
8-99

Advertisement

Table of Contents
loading

This manual is also suitable for:

Procurve secure router 7102 dl

Table of Contents