Network Configuration
Managing IP Security
59270-00 A
3-11
A
Creating a Policy
To create a policy, enter the
Ipsec Policy
Create command as shown in the
following example:
SANbox #> admin start
SANbox (admin) #> ipsec edit
SANbox (admin-ipsec) #> ipsec policy create h2h-sh-sp
A list of attributes with formatting will follow.
Enter a value or simply press the ENTER key to skip specifying a value.
If you wish to terminate this process before reaching the end of the list
press 'q' or 'Q' and the ENTER key to do so.
Required attributes are preceded by an asterisk.
Value (press ENTER to not specify value, 'q' to quit):
Description (string value, 0-127 bytes) : Host-to-host: switch->host
*SourceAddress (hostname, IPv4, or IPv6 Address/[PrefixLength]): fe80::2c0:ddff:fe03:d4c1
SourcePort (decimal value, 1-65535) :
*DestinationAddress (hostname, IPv4, or IPv6 Address/[PrefixLength]): fe80::250:daff:feb7:9d02
DestinationPort (decimal value, 1-65535) :
*Protocol (decimal value, or keyword)
Allowed keywords
icmp, icmp6, ip4, tcp, udp or any : any
*Direction (1=in, 2=out) : 2
Priority (value, -2147483647 to +214783647) :
*Action (1=discard, 2=none, 3=ipsec) : 3
*ProtectionDesired (select one, transport-mode only)
1=ah Authentication Header
2=esp Encapsulating Security Payload
3=both : 2
*espRuleLevel (1=default, 2=use, 3=require) : 3
The security policy has been created.
This configuration must be saved with the 'ipsec save' command
before it can take effect, or to discard this configuration
use the 'ipsec cancel' command.
Summary of Contents for SANbox 3810
Page 1: ...59270 00 A SANbox 3810 Fibre Channel Switch Command Line Interface Guide Firmware Version 7 4...
Page 16: ...Preface Technical Support xvi 59270 00 A S Notes...
Page 26: ...Command Line Interface Usage Downloading and Uploading Files 1 10 59270 00 A S Notes...
Page 50: ...Network Configuration Managing IP Security 3 20 59270 00 A S Notes...
Page 116: ...Connection Security Configuration Creating an SSL Security Certificate 7 4 59270 00 A S Notes...
Page 142: ...Event Log Configuration Creating and Downloading a Log File 10 8 59270 00 A S Notes...
Page 160: ...Call Home Configuration Resetting the Call Home Database 11 18 59270 00 A S Notes...
Page 380: ...Command Reference Zoning Save 13 212 59270 00 A S Notes...
Page 394: ...SANbox 3810 Fibre Channel Switch Command Line Interface Guide Index 14 59270 00 A S Notes...
Page 395: ......