EasyManuals Logo

Cisco IOS XR User Manual

Cisco IOS XR
254 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #144 background imageLoading...
Page #144 background image
Implementing IPSec Network Security on Cisco IOS XR Software
How to Implement IPSec Network Security for VPNs
SC-132
Cisco IOS XR System Security Configuration Guide
DETAILED STEPS
How to Implement IPSec Network Security for VPNs
This section contains the following procedures:
Configuring IPSec Virtual Interfaces, page SC-133
Configuring the Default Path Maximum Transmission Unit for the SA, page SC-139
Command or Action Purpose
Step 1
configure
Example:
RP/0/RP0/CPU0:router# configure
Enters global configuration mode.
Step 2
crypto ipsec transport
Example:
RP/0/RP0/CPU0:router(config)# crypto ipsec
transport
Enters IPSec transport configuration mode.
In the IPSec transport configuration mode, IPSec
protects the Upper Layer Protocol (ULP) header and
the payload. IPSec transport configuration mode is
used when security is desired end to end. That is,
security endpoints are the same as host endpoints.
Step 3
profile
profile-name
Example:
RP/0/RP0/CPU0:router(config-transport)# profile
sample2
Specifies the crypto profile to use in IPSec processing.
Step 4
end
or
commit
Example:
RP/0/RP0/CPU0:router(config-transport)# end
or
RP/0/RP0/CPU0:router(config-transport)# commit
Saves configuration changes.
When you issue the end command, the system prompts
you to commit changes:
Uncommitted changes found, commit them before
exiting(yes/no/cancel)?
[cancel]:
Entering yes saves configuration changes to the
running configuration file, exits the configuration
session, and returns the router to EXEC mode.
Entering no exits the configuration session and
returns the router to EXEC mode without
committing the configuration changes.
Entering cancel leaves the router in the current
configuration session without exiting or
committing the configuration changes.
Use the commit command to save the configuration
changes to the running configuration file and remain
within the configuration session.

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco IOS XR and is the answer not in the manual?

Cisco IOS XR Specifications

General IconGeneral
Operating SystemCisco IOS XR
ArchitectureMicrokernel
High AvailabilityYes
TypeNetwork operating system
Developed byCisco Systems
LicenseProprietary
Programming LanguageC, C++
KernelQNX
Supported PlatformsCisco ASR9000, NCS series
Security FeaturesRole-Based Access Control (RBAC), Secure Boot, Encryption
Management InterfaceCLI, SNMP, NETCONF, RESTCONF
Release Date2004
Target DevicesHigh-end core routers, service provider edge routers, data center interconnect (DCI) routers
Supported HardwareCisco routers and switches
Networking ProtocolsBGP, OSPF, IS-IS, MPLS
Virtualization SupportVirtualization-ready, supports network function virtualization (NFV) and containerization technologies.

Related product manuals