Brocade Mobility RFS4000, RFS6000 and RFS7000 CLI Reference Guide 239
53-1001931-01
Global Configuration commands 5
set session-key out esp 258 cipher
123456789012345678901234567890123456789012 34 authenticator
123456789012345678901234567890123456789012 34
match address 101
set transform-set tfset-manual
!
.......................................... ...................
.......................................... ...................
interface vlan11
ip address 11.1.1.2/24
crypto map manual
!
.......................................... ...................
.......................................... ...................
RFController(config-if)#
Usage Guidelines
A peer address can be deleted with a wrong isakmp value. Crypto currently matches only the IP address when a no command is issued
RFController(config)#crypto isakmp key 12345678 ad dress 4.4.4.4
RFController(config)#show running-config
configuration of RFController version 4.2.1.0
version 1.0
!
service prompt crash-info
!
username admin password 1 8e67bb26b358e2ed 20fe552ed6fb832f397a507d
username admin privilege superuser
username operator password 1 fe96dd39756ac41b74283a9292652d366d73931f
username manager password 1 45b27d6483fc63 0981ad5096ff26a7956ce0c038
.......................................... .
...............................
crypto isakmp key 12345678 address 4.4.4.4
crypto ipsec security-association lifetime kilobytes 4608000
RFController(config)#
RFController(config)#no crypto isakmp key 12348 addr ess 4.4.4.4
RFController(config)#
In the example above, key 12345678 is associated with IP address 4.4.4.4. You can delete this key by using the no command and a wrong key number
Example
RFController(config)#crypto pki ?
authenticate Authenticate and import CA Certificate
enroll Enroll
export Export
import Import
trustpoint Define a CA trustpoint
RFController(config)#crypto pki trustpoint ?
WORD Trustpoint Name
RFController(config)#crypto pki trustpoint Test