Dell PowerConnect W-7200 Series Reference Manual page 438

Arubaos 6.2
Hide thumbs Also See for PowerConnect W-7200 Series:
Table of Contents

Advertisement

master-redundancy peer-ip
master-redundancy peer-ip <ipaddr>
ipsec <key>
ipsec-custom-cert master-mac <mac> ca-cert <ca> server-cert <cert> [suite-b gcm-128|gcm-
256]
ipsec-factory-cert master-mac <mac>
Description
This command configures the IP address and preshared key or certificate for a redundant master controller on
another master controller.
Syntax
Parameter
<ipaddr>
ipsec <key>
ipsec-custom-cert
master-mac <mac>
ca-cert <ca>
server-cert
<cert>
suite-b
ipsec-factory-cert
master-mac <mac>
Usage Guidelines
Use this command on a master controller to configure the IP address and preshared key or certificates for
communication with a redundant master controller.
If your master controllers use a pre-shared key for authentication, they will create the IPsec tunnel using IKEv1. If
your master and local controllers use certificates for authentication, the IPsec tunnel will be created using IKEv2.
438 | master-redundancy peer-ip
Description
IP address of the redundant controller. Use the 0.0.0.0 address to configure a global
preshared key for all inter-controller communications.
To establish the master-master IPsec tunnel using IKEv1, enter a preshared key between 6-
64 characters.
Use a custom-installed certificate on the controller to establish the master-master IPsec
tunnel using IKEv2
The MAC address of the certificate on the redundant master controller.
User-defined name of a trusted CA certificate installed on the redundant master controller.
Use the show crypto-local pki TrustedCA command to display the CA certificates that have
been imported into the controller.
User-defined name of a server certificate installed on on the redundant master controller.
Use the show crypto-local pki ServerCert command to display the server certificates that
have been imported into the controller.
If you configure your master controllers to use IKEv2 and custom-installed certificates, you
can optionally use Suite-B cryptographic algorithms for IPsec encryption. Specify one of the
following options:
gcm-128 Use 128-bit AES-GCM Suite-B encryption
l
gcm-256 Use 256-bit AES-GCM Suite-B encryption
l
Use the factory-installed certificate on the master controller to establish a master-local
IPsec tunnel using IKEv2.
The MAC address of the certificate on the redundant master controller.
Dell PowerConnect W-Series ArubaOS 6.2 | Reference Guide

Advertisement

Table of Contents
loading

This manual is also suitable for:

Powerconnect w-series

Table of Contents