Avaya BSGx4e CLI Guide de l'utilisateur Page 50

  • Télécharger
  • Ajouter à mon manuel
  • Imprimer
  • Page
    / 184
  • Table des matières
  • MARQUE LIVRES
  • Noté. / 5. Basé sur avis des utilisateurs
Vue de la page 49
Internet key exchange commands 3 Configuration commands
50 NN47928-107
ike preshared
An IKE preshared key record specifies the preshared key used to encrypt
ISAKMP messages. An IKE preshared key record defines the key (similar to
a password) used to authenticate a remote secure gateway.
Every IKE SA negotiation refers to a preshared key record to get the key
value shared with the peer, that is, the remote secure gateway. Usually,
each VPN has its own preshared key record. The same preshared key value
must be configured at the remote secure gateway.
All IKE negotiations run over UDP on port 500; a firewall rule security
policy must be configured to allow incoming UDP traffic to destination port
500 from the remote secure gateway.
The BSGX4e does not support aggressive mode IKE negotiations; the
remote secure gateway must be configured to use main mode.
The peer can be specified by a fixed IP address or by a host name. The DNS
server resolves a host name to its current IP address.
Syntax config ike preshared <hostname|ip address> key <string>
Parameters peer hostname|ip address
Enter the peer host name or IP address of the
remote gateway.
key string Enter a preshared key (up to 50 characters).
The same preshared key must be configured at
the remote gateway.
Example > config ike preshared 10.0.1.2 key 1J3W5RE89
Related
commands
del ike preshared
display ike preshared
show ike preshared
clear protocol ike
show protocol ike
clear ike sa
show ike sa
Vue de la page 49
1 2 ... 45 46 47 48 49 50 51 52 53 54 55 ... 183 184

Commentaires sur ces manuels

Pas de commentaire