SROS Command Line Interface Reference Guide

Crypto Map Manual Command Set

 

 

set transform-set <setname>

Use the set transform-setcommand to assign a transform-set to a crypto map.

Syntax Description

<setname>

Assign a transform-set to this crypto map by entering the set name.

Default Values

By default, no transform-set is assigned to the crypto map.

Command Modes

(config-crypto-map)# Crypto Map Configuration Mode (IKE or Manual)

Functional Notes

Crypto map entries do not directly contain the transform configuration for securing data. Instead, the crypto map is associated with transform sets which contain specific security algorithms.

If no transform-set is configured for a crypto map, then the entry is incomplete and will have no effect on the system. For manual key crypto maps, only one transform set can be specified.

Usage Examples

The following example first creates a transform-set (Set1) consisting of two security algorithms (up to three may be defined), and then assigns the transform-set to a crypto map (Map1):

(config)#crypto ipsec transform-set Set1 esp-3des esp-sha-hmac (cfg-crypto-trans)#exit

(config)#crypto map Map1 1 ipsec-manual (config-crypto-map)#set transform-set Set1

5991-2114

© Copyright 2005 Hewlett-Packard Development Company, L.P.

415

Page 415
Image 415
HP 7000 dl Router manual Set transform-set setname