Motorola RF Switch CLI Reference Guide
5-22
5.1.8 crypto

Global Configuration Commands
Use crypto to define system level local ID for ISAKMP negotiation and to enter the ISAKMP
Policy, ISAKMP Client or ISAKMP Peer command set.
Supported in the following platforms:
• RFS7000
• RFS6000
• RFS4000
Syntax
crypto [ipsec|isakmp|key|map|pki]
crypto ipsec [security-association|transform-set]
crypto ipsec security-association lifetime
[kilobyte|seconds] <lifetime>
crypto ipsec transform-set <transform-set-tag>
[ah-md5-hmac|ah-sha-hmac|esp-3des|esp-aes|esp-aes-192|
esp-aes-256|esp-des|esp-md5-hmac|esp-sha-hmac]
NOTE: crypto isakmp(policy)Priority moves to the
config-crypto-isakmp instance. For more information, see
Crypto-isakmp Instance on page 6-1.
crypto isakmp client configuration group default
moves you to the config-crypto-group instance. For more details,
see Crypto-group Instance on page 7-1.
crypto isakmp peer IP Address moves to the
config-crypto-peer instance. For more details, see Crypto-peer
Instance on page 8-1.
crypto ipsec transformset <tag> <value> leads you to
crypto-ipsec. Use the crypto ipsec transform-set command to
define the transform configuration for securing data (for example, esp-
3des, esp-sha-hmac, etc.). The transform-set is assigned to a crypto
map using the map’s set transform-set command. For more details, see
Crypto-ipsec Instance on page 9-1.
crypto pki trustpoint mode leads to the config-trustpoint
instance. For more details, see Crypto-trustpoint Instance on page 11-1.