Nortel Networks 608(WL) Network Card User Manual


 
Chapter 4
Configuration via the Command Line Interface
E-DOC-CTC-20051017-0169 v0.1
120
Remote Security
Gateway identifier
[remoteaddr]
This parameter localizes the remote Security Gateway on the Internet. Either the
public IP address or the Fully Qualified Domain Name can be used as an identifier.
Backup remote Security
Gateway Identifier
[backupaddr]
When a redundant remote Security Gateway is available, its public IP address or
host name can be specified here. In a basic IPSec configuration, this parameter is
left unset.
Exchange mode
[exchmode]
This parameter determines the exchange mode used during the Phase 1
negotiation. The SpeedTouch™ supports both main mode and aggressive mode.
Local Identifier [localid] This parameter identifies the local SpeedTouch™ during the Phase 1 negotiation
with the remote Security Gateway. This identity must match the settings in the
remote Security Gateway in order to successfully set up the IKE Security
Association. The identity types supported in the SpeedTouch™ are listed in the
following table.
Exchange mode
Keyword Valid values
exchmode main
aggressive
Identity type Keyword Examples
IP address (addr) 10.0.0.1
Fully qualified domain name (fqdn) sales.corporate.net
User fully qualified domain
name
(userfqdn) john.doe@corporate.net
Distinguished name (dn) dc=corpor,uid=user
Key identity (keyid) cisid
any (any)