14 – Command Reference
Command Listing
59263-02 A 14-47
A
delete [association]
Deletes the specified association given by [association] from the Security
Association database. You must enter the Ipsec Save command afterwards to
save your changes.
edit [association]
Opens an edit session in which to change the configuration of an existing
association given by [association]. For descriptions of the association parameters,
refer to Table 14-6. If the connection is not secure (SSH is disabled), the
AuthenticationKey and EncryptionKey values are masked.
Protocol IP security protocol to be used to process data. The
protocol can be one of the following:
 Encapsulated Security Payload–RFC 2406 (esp)
 Encapsulated Security Payload–RFC 1827
(esp-old)
 Authentication Header– RFC 2402 (ah)
 Authentication Header–RFC 1826 (ah-old)
SPI Security parameters index number
Authentication Algorithm to use to authenticate the source or desti-
nation. The authentication algorithm can be one of
the following:
îš„ HMAC-MD5
îš„ HMAC-SHA1
îš„ HMAC-SHA256
îš„ AES-XCBC-MAC
AuthenticationKey Key string to use for authentication.
Encryption Algorithm that encrypts outbound data or decrypt
inbound data. The encryption algorithm can be one
of the following:
îš„ DES-CBC
îš„ 3DES-CBC
EncryptionKey Key string to use in encrypting or decrypting data.
Table 14-6. Association Configuration Parameters
Parameter Description