14 ā Command Reference
Ipsec Policy
14-54 59183-03 A
S
Protocol Protocol or application to which to apply IP security. Enter a key-
word for one of the following protocols or an integer (0-255):
ī Internet Control Message Protocol for IP version 4 (ICMP)
ī Internet Control Message Protocol for IP version 6 (ICMP6)
ī Internet Protocol, version 4 (IPv4)
ī Transmission Control Protocol (TCP)
ī User Datagram Protocol (UDP)
ī Any protocol
ICMP6 ICMP number (0ā255). You are prompted for this parameter
only if you specify ICMP6 for the Protocol parameter.
Direction Direction of the data traffic to which to apply the policy:
ī InāData entering the destination
ī OutāData leaving the source
Priority A number from -2147483647 to +214783647 that determines
priority for this policy in the security policy database. The higher
the number, the higher the priority.
Action Processing to apply to data traffic:
ī DiscardāUnconditionally disallow all inbound or outbound
data traffic.
ī NoneāAllow all inbound or outbound data traffic without
encryption or decryption.
ī IpsecāApply IP security to inbound and outbound data traf-
fic.
ProtectionDesired Type of IP security protection to apply:
ī AHāAuthentication Header
ī ESPāEncapsulating Security Payload
ī BothāApply both AH and ESP protection
ahRuleLevel Rule level to apply for AH protection:
ī Defaultāuse the system wide default for the protocol
ī Useāuse a security association if one is available
ī Requireāa security association is required whenever a
packet is sent that is matched with the policy
Table 14-7. Policy Configuration Parameters (Continued)
Parameter Description