Implementing Internet Key Exchange Security Protocol on Cisco IOS XR Software
Configuring IP Security VPN Monitoring
The following sections describe how to configure IP Security (IPSec) VPN monitoring:
•
•
Adding the Description of an IKE Peer
This task allows you to add the description of an IKE peer to an IPSec VPN session.
SUMMARY STEPS
1.
2.
3.
4.
5.
DETAILED STEPS
Command or Action
Step 1
configure
Example:
RP/0/RP0/CPU0:router# configure
Step 2
crypto isakmp peer {address ip-address | hostname
hostname } [description line | vrf fvrf-name ]
Example:
RP/0/RP0/CPU0:router(config)# crypto isakmp peer
address 40.40.40.2
RP/0/RP0/CPU0:router(config-isakmp-peer)
Step 3
description line-of-description
Example:
RP/0/RP0/CPU0:router(config-isakmp-peer)#
description citeA
Adding the Description of an IKE Peer, page SC-57
Clearing a Crypto Session, page SC-58
configure
crypto isakmp peer {address ip-address | hostname hostname} [description line | vrf fvrf-name]
description line-of-description
end
or
commit
show crypto isakmp peers [ip-address | vrf vrf-name]
How to Implement IKE Security Protocol Configurations for IPSec Networks
(optional)
(optional)
Purpose
Enters global configuration mode.
Enables an IPSec peer for IKE querying of
authentication, authorization, and accounting
(AAA) for tunnel attributes in aggressive mode and
enters ISAKMP peer configuration mode.
Adds a description for an IKE peer.
Cisco IOS XR System Security Configuration Guide
SC-57