HP ProCurve Secure Router 7203 dl Advanced Management And Configuration Manual page 470

Secure router
Hide thumbs Also See for ProCurve Secure Router 7203 dl:
Table of Contents

Advertisement

Virtual Private Networks
Troubleshooting a VPN That Uses IPSec
Message
Value Options
IANA Transform
• 256
ID
• 192
• 3DES
• 128
• DES
• NULL
SA Attribute
Value Options
Authentication
• SHA1
Algorithm
• MD5
Encapsulation
• transport
Mode
• tunnel
8-84
Table 8-29 and Table 8-30 show where in the local router's running-config you
can find the settings that should match the IPSec security policies proposed
by the peer.
Table 8-29. IANA Transform ID
Remote Setting
Table 8-30. IPSec SA TRANSFORM ATTRIBUTES
Remote Setting
Setting in
Options
Running-Config
Find the transform
• esp-aes-256-
set:
cbc
crypto map
• esp-aes-192-
<mapname>
cbc
<mapindex>
• esp-3des
set transform-set
• esp-aes-128-
<setname>
cbc
View the setting:
• esp-des
crypto ipsec
• esp-null
transform-set
<setname>
Setting in the
Options
Running-Config
Find the transform
• ah-sha-hmac
set:
• ah-md5-hmac
• crypto map
• esp-sha-hmac
<mapname>
• esp-md5-hmac
<mapindex>
• set transform-
set <setname>
View the setting:
crypto ipsec
transform-set
<setname>
crypto ipsec
tunnel
transform-set
<setname>
mode
Local Setting
Local Setting

Advertisement

Table of Contents
loading

This manual is also suitable for:

Procurve secure router 7102 dl

Table of Contents