Index
SC-239
Cisco IOS XR System Security Configuration Guide
outbound traffic, configuring SC-84
overview SC-76
start-time SC-76
text, configuring SC-81
valid key, determining SC-82
key identifier, configuring SC-79
keyring command SC-59
keyring configuration mode, enabling SC-46
keys
mask preshared
SC-27
preshared
configuring (example)
SC-48
IKE policy parameter SC-23
using AAA server SC-27, SC-28
key string
how to configure
SC-81
key-string command SC-82
key validation, determining SC-82
L
lifetime, key chain SC-76
load balancing overview SC-103
M
MAC (message authentication code) SC-86
authentication option SC-76
cryptographic algorithm procedure SC-85
management plane
management-plane command
SC-230
MPP feature SC-229
overview SC-228
match identity command SC-59
MD5 (Message Digest 5) algorithm SC-22
IKE policy parameter SC-23
MPLS (Multiprotocol Label Switching), encapsulated
packets
SC-104
MPP (Management Plane Protection)
benefits
SC-229
control plane protection SC-228
description SC-227, SC-229
device configuration SC-230
inband management interface SC-228
management plane SC-228
show mgmt-plane command SC-230
MTU (maximum transmission unit), default path
crypto ipsec pmtu command
SC-139
procedure SC-139
N
NAT transparency (IPSec)
crypto nat-transparency command
SC-119
overview SC-99
procedure SC-118
nonces
See RSA encrypted nonces
O
Oakley key exchange protocol SC-21
See also IKE
outbound traffic (key chain), configuring
SC-84
P
per VRF (VPN routing and forwarding) AAA
procedure
SC-196
server-private command SC-197
supported VSAs SC-196
vrf command SC-197
PFS (perfect forward secrecy)
overview
SC-97
set pfs command SC-97