Symbol Technologies WS 2000 Switch User Manual


 
Command Line Interface Reference 10-107
WS2000>admin(network.wan.vpn)> set
Description:
Sets security policy database (SPD) entry parameters.
Syntax:
set ike myidtype
<name> <idtype>
Sets the Local ID type for IKE authentication for SPD
<name> (1 to 13 characters) to <idtype> (one of IP,
FQDN, or UFQDN).
remidtype
<name> <idtype>
Sets the Remote ID type for IKE authentication for SPD
<name> (1 to 13 characters) to <idtype> (one of IP,
FQDN, or UFQDN).
myiddata
<name> <iddata>
Sets the Local ID data for IKE authentication for SPD
<name> to <idtype>. This value is not required when the
ID type is set to IP.
remiddata
<name> <iddata>
Sets the Remote ID data for IKE authentication for SPD
<name> to <idtype>.
opmode
<name>
Main/
Aggr
Sets the Operation Mode of IKE for SPD <name> to Main
or Aggr(essive).
authtype
<name> <authtype>
Sets the IKE Authentication type for SPD <name> to
<authtype> (one of PSK or RSA).
authalgo
<name>
MD5/
SHA1
Sets the IKE Authentication Algorithm for SPD <name> to
MD5 or SHA1.
psk
<name> <psk>
Sets the IKE Pre-Shared Key for SPD <name> to <psk>
(1–49 characters).
encalgo
<name> <encalgo>
Sets the IKE Encryption Algorithm for SPD <name> to
<encalgo> (one of DES, 3DES, AES128, AES192, or
AES256).
lifetime
<name> <lifetime>
Sets the IKE Key life time in seconds for SPD <name> to
<lifetime>.
group
<name>
G768/
G1024
Sets the IKE Diffie-Hellman Group for SPD <name> to
either G768 or G1024.
type
<name>
Auto/
Manual
Sets the authentication type of SPD <name> to Auto or
Manual.
sub
<name> <sub>
Sets the Local Subnet (1, 2, 3, or 4) for SPD <name> to
subnet number <sub> (1, 2, 3, or 4).
remip
<name> <remip>
Sets the IP address for the remote end of SPD <name> to
<remip> (a.b.c.d).
remmask
<name> <remmask>
Sets the IP Mask for the remote end of SPD <name> to
<remmask> (a.b.c.d).
remgw
<name> <remgw>
Sets the Remote IP gateway for SPD <name> to be
<remgw> (a.b.c.d).
authalgo
<name> <authalgo>
Sets the authentication algorithm for SPD <name> to
<authalgo> (one of None, MD5, or SHA1).