Crypto Ike Policy Proposal Dh-Group - Avaya Secure Router 3120 Command Reference Manual

Modular system that converges routing, security and multimedia traffic
Hide thumbs Also See for Secure Router 3120:
Table of Contents

Advertisement

IPSEC COMMANDS
All modules

crypto ike policy proposal dh-group

Configures the IKE Diffie-Hellman group for key exchange between peers
syntax:
[no] configure crypto ike policy <policy-name> <peer-address> proposal <proposal priority>
dh-group [group1 | group2 | group5]
parameter
group1
group2
group5
example: SR> configure term SR/configure> crypto SR/crypto> ike policy toOpal 100.1.1.1
SR/crypto/ike/policy toOpal 100.1.1.1> proposal 1 SR/crypto/ike/policy toOpal 100.1.1.1/
proposal> dh-group group1
applies to:
All modules
crypto ike policy proposal encryption-algorithm
Configures the IKE encryption algorithm for a proposal.
syntax:
[no] configure crypto ike policy <policy-name> <peer-address> proposal <proposal-priority>
encryption-algorithm [des-cbc | 3des-cbc | aes128-cbc | aes192-cbc | aes256-cbc]
parameter
des-cbc
3des-cbc
724
Avaya Secure Router 3120 Command Reference Guide
768-bit. RFC 2409. Type of Diffie-Hellman prime modulus group
when performing key exchange. Default is group1.
1024-bit. RFC 2409 Type of Diffie-Hellman prime modulus
group when performing key exchange.
1536-bit. Type of Diffie-Hellman prime modulus group that IKE
will use for the PFS key exchange. This is the highest level of
security and requires more process time than group 1 and group
2.
. Data Encryption Standard algorithm with cipher block chaining
mode. Default.
Triple DES algorithm with cipher block chaining.
definition
definition
December 2010

Advertisement

Table of Contents
loading

Table of Contents