Match address <listname – ADTRAN 1000R Series User Manual

Page 1233

Advertising
background image

Command Reference Guide

Crypto Map IKE Command Set

61200510L1-35E

Copyright © 2005 ADTRAN

1233

match address <listname>

Use the match address command to assign an IP access list to a crypto map definition. The access list
designates the IP packets to be encrypted by this crypto map. Refer to ip access-list extended <listname>

on page 392

for more information on creating access lists.

Syntax Description

<listname>

Specifies the name of the access list you wish to assign to this crypto map.

Default Values

By default, no IP access lists are defined.

Applicable Platforms

This command applies to the NetVanta 300, 1000R, 2000, 3000, 4000, and 5000 and Total Access 900
Series units.

Command History

Release 4.1

Command was introduced.

Functional Notes

Crypto map entries do not directly contain the selectors used to determine which data to secure. Instead,
the crypto map entry refers to an access control list. An access control list (ACL) is assigned to the crypto
map using the match address command. If no ACL is configured for a crypto map, then the entry is
incomplete and will have no effect on the system.

The entries of the ACL used in a crypto map should be created with respect to traffic sent by the ADTRAN
product. The source information must be the local ADTRAN product and the destination must be the peer.

Only extended access lists can be used in crypto maps.

Advertising