Creating A Policy; Deleting A Policy - HP StorageWorks SN6000 Command Line Interface Manual

Fibre channel switch
Hide thumbs Also See for StorageWorks SN6000:
Table of Contents

Advertisement

Creating a policy

To create a policy, enter the ipsec policy create command as shown in the following example:
SN6000 FC Switch #> admin start
SN6000 FC Switch (admin) #> ipsec edit
SN6000 FC Switch (admin-ipsec) #> ipsec policy create h2h-sh-sp
A list of attributes with formatting will follow.
Enter a value or simply press the ENTER key to skip specifying a value.
If you wish to terminate this process before reaching the end of the list
press 'q' or 'Q' and the ENTER key to do so.
Required attributes are preceded by an asterisk.
Value (press ENTER to not specify value, 'q' to quit):
Description
*SourceAddress
SourcePort
*DestinationAddress (IPv4, IPv6 or hostname/[PrefixLength])
DestinationPort
*Protocol
*Direction
Priority
*Action
*ProtectionDesired
*espRuleLevel
The security policy has been created.
This configuration must be saved with the 'ipsec save' command
before it can take effect, or to discard this configuration
use the 'ipsec cancel' command.

Deleting a policy

To delete a user-defined policy, enter the ipsec policy delete command, as shown in the following
example:
SN6000 FC Switch #> admin start
SN6000 FC Switch (admin) #> ipsec edit
SN6000 FC Switch (admin-ipsec) #> ipsec policy delete policy_1
The security policy will be deleted. Please confirm (y/n): [n] y
SN6000 FC Switch (admin-ipsec) #> ipsec save
The IPsec configuration will be saved and activated.
Please confirm (y/n): [n] y
28
Network Configuration
(string value, 0-127 bytes)
(IPv4, IPv6 or hostname/[PrefixLength])
(decimal value, 1-65535)
(decimal value, 1-65535)
(decimal value, or keyword)
Allowed keywords
icmp, icmp6, ip4, tcp, udp or any
(1=in, 2=out)
(value, -2147483647 to +214783647)
(1=discard, 2=none, 3=ipsec)
(select one, transport-mode only)
1=ah
Authentication Header
2=esp
Encapsulating Security Payload
3=both
(1=default, 2=use, 3=require)
:
Host-to-host:switch->host
:
fe80::2c0:ddff:fe03:d4c1
:
:
fe80::250:daff:feb7:9d02
:
: any
: 2
:
: 3
: 2
: 3

Advertisement

Table of Contents
loading

Table of Contents