Crypto ipsec transform-set <setname> <parameters – ADTRAN 1000R Series User Manual

Page 374

Advertising
background image

Command Reference Guide

Global Configuration Mode Command Set

61200510L1-35E

Copyright © 2005 ADTRAN

374

crypto ipsec transform-set <setname> <parameters>

Use the crypto ipsec transform-set command to define the transform configuration for securing data
(e.g., esp-3des, esp-sha-hmac, etc.). The transform set is then assigned to a crypto map using the map’s
set transform-set command. Refer to set transform-set <setname1 - setname6>

on page 1238

.

Syntax Description

<setname>

Assigns a name to the transform set you are about to define.

<parameters>

Assigns a combination of up to three security algorithms. This field is a valid
combination of the following:

ah-md5-hmac, ah-sha-hmac

esp-des, esp-3des, esp-aes-128-cbc, esp-aes-192-cbc, esp-aes-256-cbc,
esp-null

esp-md5-hmac, esp-sha-hmac

Default Values

There are no default settings for this command.

Applicable Platforms

This command applies to the NetVanta 300, 1000R, 2000, 3000, and 4000 and Total Access 900 Series
units.

Command History

Release 4.1

Command was introduced.

Functional Notes

Crypto map entries do not directly contain the transform configuration for securing data. Instead, the crypto
map is associated with transform sets which contain specific security algorithms.

If no transform set is configured for a crypto map, the entry is incomplete and will have no effect on the
system.

For VPN configuration example scripts, refer to the technical support note VPN
Configuration Guide
located on the ADTRAN OS Documentation CD provided with
your unit.

Advertising