Transform (Ipsec Profile) - Allied Telesis AT-AR3050S Command Reference Manual

Next-generation firewall
Hide thumbs Also See for AT-AR3050S:
Table of Contents

Advertisement

IP
C
SEC
OMMANDS
(IP
P
)
TRANSFORM
SEC
ROFILE

transform (IPsec Profile)

Overview
Use this command to create an IPsec profile transform which specifies the
encryption and authentication algorithms used to protect data.
Use the no variant to delete a previously created transform.
Syntax
transform <1-255> protocol esp integrity {sha1|sha256|sha512}
encryption {3des|aes128|aes192|aes256}
no transform <1-255>
Default
By default, an IPsec profile has no transforms and so will not be active.
Mode
IPsec Profile Configuration
Examples
To configure an IPsec profile transform, use the following commands:
awplus(config)#
awplus(config-ipsec-profile)#
integrity sha1 encryption 3des
To delete a created transform, use the following command:
awplus(config-ipsec-profile)#
Related
crypto ipsec profile
Commands
Validation
show ipsec profile
Commands
C613-50077-01 REV A
Parameter
Description
<1-255>
Transform priority (1 is the highest)
sha1
Secure Hash Standard with 160-bit digest size
sha256
Secure Hash Standard with 256-bit digest size
sha512
Secure Hash Standard with 512 bit digest size
3des
Triple DES symmetric key block cipher with a 168-bit key
aes128
Advanced Encryption Standard symmetric key block cipher with a
128-bit key
aes192
Advanced Encryption Standard symmetric key block cipher with a
192-bit key
aes256
Advanced Encryption Standard symmetric key block cipher with a
256-bit key
crypto ipsec profile my_profile
Command Reference for AT-AR3050S
AlliedWare Plus™ Operating System - Version 5.4.5-2.x
transform 2 protocol esp
no transform 2
2304

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents