Nortel Networks 608(WL), 620 Peer Security Descriptor Parameters, Parameter Keyword Description

Models: 620 608(WL)

1 222
Download 222 pages 37.22 Kb
Page 113
Image 113

Chapter 4

Configuration via the Command Line Interface

4.3.1 Peer Security Descriptor Parameters

Parameter table The following table summarizes the parameters comprised in the peer security descriptor. The table also indicates the keyword used in the CLI for each parameter:

Parameter

Keyword

Description

 

 

 

Cryptographic function

crypto

Cryptographic function used for

encrypting the IKE messages

 

 

 

 

 

Key length

keylen

Length of the cryptographic key.

 

 

 

Hash function

integrity

Hashing function used for message

authentication

 

 

 

 

 

Diffie-Hellman group

group

Diffie-Hellman group for key exchange

 

 

 

 

 

The lifetime of the IKE Security

IKE SA lifetime

lifetime_secs

Association. At expiration of this

 

 

period re-keying occurs.

 

 

 

Example A Peer Security Descriptor is a text string, comprising the parameters described in the table above. An example is shown here:

3DES

MD5

MODEP1024

Diffie-Hellman group

Lifetime 3600s

IPsec SA lifetime

Hash function

Cryptographic function

Peer Descriptor name This name is used internally to identify the Peer Security Descriptor. [name]

E-DOC-CTC-20051017-0169 v0.1

111

 

Page 113
Image 113
Nortel Networks 608(WL), 620 manual Peer Security Descriptor Parameters, Parameter Keyword Description