Digi 90000566_H Network Router User Manual


 
set vpn
230 Chapter 2 Command Descriptions
[isakmp options]:
mode=isakmp
[shared_key={ascii key|hex key}]
To specify proposals: see syntax and options for “Set IKE/ISAKMP SA
Phase 2 Options.”
Set IKE/ISAKMP SA Phase 1 Options
syntax: set vpn phase1
[index=1-2]
[state={enabled|disabled}]
[auth_method={shared_key|dss|rsa}]
[authentication={md5|sha1}]
[encryption={des|3des|aes}]
[encryption_size={0|128|192|256}]
[sa_lifetime=10-2^32] (Please see option details below)
[sa_lifetime_data=0-2^32] (Please see option details below)
Set IKE/ISAKMP SA Phase 2 Options
set vpn phase2
[tunnel=1-2]
[name=tunnel name]
[proposal=(1-8)]
[state={enabled|disabled}]
[authentication={none|md5|sha1}]
[encryption={none|des|3des|aes}]
[sa_lifetime=60-2^32] (Please see option details below)
[sa_lifetime_data=0-2^32] (Please see option details below)
Display current VPN settings
set vpn global
set vpn tunnel
set vpn phase1
set vpn phase2