ZyXEL Communications ZYWALL 1050 - V2.00 EDITION 1 Podręcznik Użytkownika Strona 142

  • Pobierz
  • Dodaj do moich podręczników
  • Drukuj
  • Strona
    / 386
  • Spis treści
  • BOOKMARKI
  • Oceniono. / 5. Na podstawie oceny klientów
Przeglądanie stron 141
Chapter 16 IPSec VPN
ZyWALL (ZLD) CLI Reference Guide
142
16.2.3 IPSec SA Commands (for Manual Keys)
This table lists the additional commands for IPSec SAs using manual keys (VPN connections
using manual keys).
16.2.4 VPN Concentrator Commands
This table lists the commands for the VPN concentrator.
Table 70 crypto map Commands: IPSec SAs (Manual Keys)
COMMAND DESCRIPTION
crypto map map_name
set session-key {ah <256..4095> auth_key |
esp <256..4095> [cipher enc_key]
authenticator auth_key}
Sets the active protocol, SPI (<256..4095>),
authentication key and encryption key (if any).
auth_key: You can use any alphanumeric
characters or ,;|`~!@#$%^&*()_+\{}':./
<>=-".
The length of the key depends on the
algorithm.
md5 - 16-20 characters
sha - 20 characters
enc_key: You can use any alphanumeric
characters or ,;|`~!@#$%^&*()_+\{}':./
<>=-". The length of the key depends on the
algorithm.
des - 8-32 characters
3des - 24-32 characters
aes128 - 16-32 characters
aes192 - 24-32 characters
aes256 - 32 characters
If you want to enter the key in hexadecimal, type
“0x” at the beginning of the key. For example,
"0x0123456789ABCDEF" is in hexadecimal
format; in “0123456789ABCDEF” is in ASCII
format. If you use hexadecimal, you must enter
twice as many characters.
The ZyWALL automatically ignores any characters
above the minimum number of characters required
by the algorithm. For example, if you enter
1234567890XYZ for a DES encryption key, the
ZyWALL only uses
12345678. The ZyWALL still
stores the longer key.
local-ip ip Sets the local gateway address to the specified IP
address.
peer-ip ip Sets the remote gateway address to the specified
IP address.
Table 71 vpn-concentrator Commands: VPN Concentrator
COMMAND DESCRIPTION
show vpn-concentrator [profile_name] Shows the specified VPN concentrator or all VPN
concentrators.
[no] vpn-concentrator profile_name Creates the specified VPN concentrator if
necessary and enters sub-command mode. The
no command deletes the specified VPN
concentrator.
Przeglądanie stron 141
1 2 ... 137 138 139 140 141 142 143 144 145 146 147 ... 385 386

Komentarze do niniejszej Instrukcji

Brak uwag