
Chapter 17 IPSec VPN
17.2.3 IPSec SA Commands (for Manual Keys)
This table lists the additional commands for IPSec SAs using manual keys (VPN connections using manual keys).
Table 73 crypto map Commands: IPSec SAs (Manual Keys)
COMMAND | DESCRIPTION |
crypto map map_name |
|
set | Sets the active protocol, SPI (<256..4095>), authentication key and |
auth_key esp <256..4095> [cipher | encryption key (if any). |
enc_key] authenticator auth_key} | auth_key: You can use any alphanumeric characters or |
| |
| |
| the algorithm. |
| md5 - |
| sha - 20 characters |
| sha256 - 32 characters |
| sha512 - 64 characters |
| enc_key: You can use any alphanumeric characters or |
| |
| the algorithm. |
| des - |
| 3des - |
| aes128 - |
| aes192 - |
| aes256 - 32 characters |
| If you want to enter the key in hexadecimal, type “0x” at the beginning |
| of the key. For example, "0x0123456789ABCDEF" is in hexadecimal |
| format; in “0123456789ABCDEF” is in ASCII format. If you use |
| hexadecimal, you must enter twice as many characters. |
| The ZyWALL automatically ignores any characters above the minimum |
| number of characters required by the algorithm. For example, if you |
| enter 1234567890XYZ for a DES encryption key, the ZyWALL only |
| uses 12345678. The ZyWALL still stores the longer key. |
Sets the local gateway address to the specified IP address. | |
Sets the remote gateway address to the specified IP address. |
17.2.4 VPN Concentrator Commands
This table lists the commands for the VPN concentrator.
Table 74
COMMAND | DESCRIPTION | |
show | Shows the specified VPN concentrator or all VPN concentrators. | |
[no] | Creates the specified VPN concentrator if necessary and enters | |
|
| mode. The no command deletes the specified VPN concentrator. |
| 147 |
ZyWALL (ZLD) CLI Reference Guide | |
|
|