Name Type Description Mandatory Default
certificat
e
N/A The content of a
.pem file, with
asterisks (*)
instead of
newlines.
N N/A
This command defines a new IPSec connection between an IP interface and a right
side.
IP interface could be either management or VPN.
If specified, the address of the right side is IPv4 or IPv6 addresses; otherwise the
right side can be any.
If specified, the secret password must be shared between the left and right sides.
If specified, the certificate must contain a public key of the right side.
Example:
ipsec_connection_add ipsec_connection=MySec left=management passkey="MyPass123"
Access Control:
User Category Permission
Storage administrator Allowed
Storage integration administrator Disallowed
Application administrator Disallowed
Security administrator Disallowed
Read-only users Disallowed
Technicians Allowed
Completion Codes:
v IPSEC_CONNECTION_EXISTS
The IPSec connection already exists
v IPSEC_CONNECTION_BETWEEN_ENDPOINTS_EXISTS
A connection between these endpoints already exists
v LEFT_INTERFACE_NOT_FOUND
The specified left side interface was not found
v MAX_IPSEC_CONNECTIONS_REACHED
The maximum allowed number of IPSec connections is already configured
v IPSEC_UNSUPPORTED_FOR_ISCSI
IPSec is unsupported for iSCSI ports
326 IBM XIV Storage System User Manual