Brocade Communications Systems RFS6000 System Reference Manual page 422

Provides centralized wireless lan (wlan)
Hide thumbs Also See for RFS6000:
Table of Contents

Advertisement

6
SA Lifetime (Kb)
Causes the security association to time out after the specified amount of traffic (in kilobytes) has passed through
the IPSec tunnel (using the security association).
ACL ID
Displays the name of the ACL ID used for each Crypto Map.
Number of Interfaces
Displays the number of interfaces each specific Crypto Map is used with.
4. Select an existing Crypto Map and click the Edit button to modify the Crypto Map's attributes.
5. Select an existing Crypto Map and click the Delete button to remove it from the list of available.
6. Click the Add button to define the attributes of a new Crypto Map.
410
If an entire Crypto Map requires revision, consider deleting the Crypto Map and creating a new
one using the Add function.
Refer to the definitions supplied for the Add Crypto Map screen (on the next page) to ascertain
the requirements for editing a Crypto Map.
a. Assign a Seq # (sequence number) to distinguish one Crypto Map from the another.
b. Assign the Crypto Map a Name to differentiate from others with similar configurations.
c.
Use the None, Domain Name or Host Name radio buttons to select and enter the fully
qualified domain name (FQDN) or host name of the host exchanging identity information.
d. Define a SA Lifetime (secs) to define an interval (in seconds) that (when expired) forces a
new association negotiation.
e. Define a SA Lifetime (Kb) to time out the security association after the specified traffic (in
kilobytes) has passed through the IPSec tunnel using the security association.
f.
Use the ACL ID drop-down menu to permit a Crypto Map data flow using the permissions
within the selected ACL.
g.
Use the PFS drop-down menu to specify a group to require perfect forward secrecy (PFS) in
requests received from the peer.
h. Use the Remote Type drop-down menu to specify a remote type (either XAuth or L2TP).
i.
Optionally select the SA Per Host checkbox to specify that separate IPSec SAs should be
requested for each source/destination host pair.
Brocade Mobility RFS4000, RFS6000, and RFS7000 System Reference Guide
53-1002515-01

Advertisement

Table of Contents
loading

This manual is also suitable for:

Rfs4000Rfs7000

Table of Contents