Cisco Cisco Packet Data Interworking Function (PDIF) Prospecto
Crypto Template IKEv2-Dynamic Payload Configuration Mode Commands
▀ default
▄ Cisco ASR 5x00 Command Line Interface Reference
2848
default
Sets or restores the default value for the specified parameter.
Product
ePDG
PDIF
Privilege
Security Administrator
Mode
Exec > Global Configuration > Context Configuration > Crypto Template Configuration > Crypto Template IKEv2-
Dynamic Payload Configuration
Dynamic Payload Configuration
configure > context context_name > crypto template template_name ikev2-dynamic > payload
payload_name match childsa
payload_name match childsa
match
{ any | ipv4 | ipv6 }
Entering the above command sequence results in the following prompt:
[context_name]host_name(cfg-crypto-tmpl-ikev2-tunnel-payload)#
Syntax
default { ignore-rekeying-requests | ip-address-allocation lifetime | maximum-child-sa |
rekey | tsi | tsr }
rekey | tsi | tsr }
ignore-rekeying-requests
Configures the system to ignore IPSec SA rekey requests.
ip-address-allocation
Configures the crypto map payload IP address allocation scheme to be the home address.
lifetime
Configures the default lifetime for IPSec Child SAs derived from this crypto template.
lifetime:
86400
seconds.
maximum-child-sa
Configures the maximum number of IPSec Child SAs to be derived from an IKEv2 IKE SA by default.
rekey
Configures the system to disable Child SA rekeying.
tsi
Configures the default TSi payload to be that of the mobile endpoint.
tsr
Configures the default TSr payload option.