Cisco Cisco Packet Data Gateway (PDG)
tsr
Configures the IKEv2 Traffic Selector-Responder (TSr) payload address options.
Product
All Security Gateway products
Privilege
Security Administrator
Command Modes
Exec > Global Configuration > Context Configuration > Crypto Template Configuration > Crypto Template
IKEv2-Dynamic Payload Configuration
IKEv2-Dynamic Payload Configuration
configure > context context_name > crypto template template_name ikev2-dynamic > payload payload_name
match childsa match { any | ipv4 | ipv6 }
match childsa match { any | ipv4 | ipv6 }
Entering the above command sequence results in the following prompt:
[
context_name
]
host_name
(cfg-crypto-tmpl-ikev2-tunnel-payload)#
Syntax Description
[ no ] tsr start-address ip address end-address ip address
no
Disables the specified tsr address range.
start-address ip address
Specifies the starting IP address of the TSr payload in IPv4 dotted-decimal or IPv6 colon-separated-hexadecimal
notation.
notation.
See the limitations listed in the Usage section.
end-address ipv4 address
Specifies the ending IP address of the TSr payload in IPv4 dotted-decimal or IPv6 colon-separated-hexadecimal
notation.
notation.
See the limitations listed in the Usage section.
Usage Guidelines
This command is used to specify an IP address range in the single TSr payload that the PDG/TTG returns in
the last IKE_AUTH message. This TSr is Child SA-specific.
the last IKE_AUTH message. This TSr is Child SA-specific.
This command is subject to the following limitations:
• The configuration is restricted to a maximum of four TSrs per payload and per childsa.
Command Line Interface Reference, Modes C - D, StarOS Release 19
1281
Crypto Template IKEv2-Dynamic Payload Configuration Mode Commands
tsr