Cisco Cisco ASR 5000

Page of 9109
Crypto Map IPSec Dynamic Configuration Mode Commands   
▀  set 
 
 
▄  Command Line Interface Reference, StarOS Release 18 
2982 
   
set 
Configures parameters for the dynamic crypto map. 
Product
 
ePDG 
FA 
GGSN 
HA 
HeNBGW 
HNBGW 
HSGW 
MME 
P-GW 
PDSN 
S-GW 
SAEGW 
SCM 
SecGW 
SGSN 
Privilege
 
Security Administrator, Administrator 
Mode
 
Exec > Global Configuration > Context Configuration > Crypto Map Dynamic Configuration 
configure > context context_name > crypto map policy_name ipsec-dynamic
 
Entering the above command sequence results in the following prompt: 
[context_name]host_name(config-crypto-dynamic-map)# 
Syntax
 
set { control-dont-fragment { clear-bit | copy-bit | set-bit } | ikev1 natt [ 
keepalive
 
sec
 
]
 
| ip mtu
 
bytes
 
| pfs { group1 | group2 | group5} | phase1-idtype { 
id-key-id | ipv4-address } [ mode { aggressive | main } ] | phase2-idtype { ipv4-
address | ipv4-address-subnet} | security-association lifetime { keepalive | 
kilo-bytes
 
kbytes
 
| seconds
 
secs
 
} | transform-set
 
transform_name
 
[ transform-set
 
transform_name2
... 
transform-set
 
transform_name6
 
]
 
}
 
no set { ikev1 natt | pfs | security-association lifetime {keepalive | kilo-bytes 
| seconds } | phase1-idtype | phase2-idtype | transform-set
 
transform_name
 
transform-set
 
transform_name2
... 
transform-set
 
transform_name6
 
] }
 
no
 
Deletes the specified parameter or resets the specified parameter to the default value.