Send documentation comments to mdsfeedback-doc@cisco.com
Contents
xxxv
Cisco MDS 9000 Family Fabric Manager Configuration Guide
OL-17256-03, Cisco MDS NX-OS Release 4.x
Deleting RSA Key-Pairs from Your Switch 43-16
Example Configurations 43-17
Configuring Certificates on the MDS Switch 43-17
Downloading a CA Certificate 43-19
Requesting an Identity Certificate 43-24
Revoking a Certificate 43-30
Generating and Publishing the CRL 43-33
Downloading the CRL 43-34
Importingthe CRL 43-36
Maximum Limits 43-36
Default Settings 43-37
CHAPTER
44 Configuring IPsec Network Security 44-1
About IPsec 44-2
About IKE 44-3
IPsec Prerequisites 44-3
Using IPsec 44-4
IPsec Compatibility 44-4
IPsec and IKE Terminology 44-5
Supported IPsec Transforms and Algorithms 44-6
Supported IKE Transforms and Algorithms 44-6
IPsec Digital Certificate Support 44-7
Implementing IPsec Without CAs and Digital Certificates 44-7
Implementing IPsec with CAs and Digital Certificates 44-8
How CA Certificates Are Used by IPsec Devices 44-9
Configuring IPsec Using FCIP Wizard 44-10
Manually Configuring IPsec and IKE 44-13
About IKE Initialization 44-13
About the IKE Domain 44-13
About IKE Tunnels 44-13
About IKE Policy Negotiation 44-14
Configuring an IKE Policy 44-15
Optional IKE Parameter Configuration 44-16
Configuring the Keepalive Time for a Peer 44-17
Configuring the Initiator Version 44-18
Clearing IKE Tunnels or Domains 44-20
Refreshing SAs 44-20
Crypto IPv4-ACLs 44-21