set security ipsec tunnels name "123" IKE-mode isakmp-SA-encrypt (DES) { DES 3DES }

See page 146 for details about SafeHarbour IPsec tunnel capability.

set security ipsec tunnels name "123" IKE-mode ipsec-mtu mtu_value

The Maximum Transmission Unit is a link layer restriction on the maximum number of bytes of data in a sin- gle transmission. The maximum allowable value (also the default) is 1500, and the minimum is 100.

set security ipsec tunnels name "123" IKE-mode isakmp-SA-hash (MD5) {MD5 SHA1}

See page 146 for details about SafeHarbour IPsec tunnel capability.

set security ipsec tunnels name "123" IKE-mode PFS-enable { off on }

See page 146 for details about SafeHarbour IPsec tunnel capability.

set security ipsec tunnels name "123" IKE-mode invalid-spi-recovery { off on }

Enables the Gateway to re-establish the tunnel if either the Motorola Netopia® Gateway or the peer gateway is rebooted.

set security ipsec tunnels name "123" xauth enable {off on }

Enables or disables Xauth extensions to IPsec, when IKE-modeneg-methodis set to aggressive. Default is off.

set security ipsec tunnels name "123" xauth username username

Sets the Xauth username, if Xauth is enabled.

set security ipsec tunnels name "123" xauth password password

Sets the Xauth password, if Xauth is enabled.

set security ipsec tunnels name "123" nat-enable { on off }

Enables or disables NAT on the specified IPsec tunnel. The default is off.

set security ipsec tunnels name "123" nat-pat-address ip-address

Specifies the NAT port address translation IP address for the specified IPsec tunnel.

289

Page 289
Image 289
Motorola 2200, 7000, 3352N, 3342 manual Set security ipsec tunnels name 123 xauth enable off on, 289