Brocade Communications Systems RFS7000 Network Router User Manual


 
Brocade Mobility RFS4000, RFS6000 and RFS7000 CLI Reference Guide 239
53-1001931-01
Global Configuration commands
5
set session-key out esp 258 cipher
12345678901234567890123456789012345678901234 authenticator
12345678901234567890123456789012345678901234
match address 101
set transform-set tfset-manual
!
.............................................................
.............................................................
interface vlan11
ip address 11.1.1.2/24
crypto map manual
!
.............................................................
.............................................................
RFController(config-if)#
Usage Guidelines
A peer address can be deleted with a wrong isakmp value. Crypto currently matches only the IP
address when a
no command is issued
RFController(config)#crypto isakmp key 12345678 address 4.4.4.4
RFController(config)#show running-config
configuration of RFController version 4.2.1.0
version 1.0
!
service prompt crash-info
!
username admin password 1 8e67bb26b358e2ed20fe552ed6fb832f397a507d
username admin privilege superuser
username operator password 1 fe96dd39756ac41b74283a9292652d366d73931f
username manager password 1 45b27d6483fc630981ad5096ff26a7956ce0c038
...........................................
...............................
crypto isakmp key 12345678 address 4.4.4.4
crypto ipsec security-association lifetime kilobytes 4608000
RFController(config)#
RFController(config)#no crypto isakmp key 12348 address 4.4.4.4
RFController(config)#
In the example above, key 12345678 is associated with IP address 4.4.4.4. You can delete this
key by using the no command and a wrong key number
Example
RFController(config)#crypto pki ?
authenticate Authenticate and import CA Certificate
enroll Enroll
export Export
import Import
trustpoint Define a CA trustpoint
RFController(config)#crypto pki trustpoint ?
WORD Trustpoint Name
RFController(config)#crypto pki trustpoint Test