Cisco Cisco Packet Data Interworking Function (PDIF) Notas De La Versión
System Changes in Release 15.0
▀ System and Platform Enhancements for September 30, 2013
▄ Cisco ASR 5x00 Release Change Reference
622
configure
context <ctxt_name>
crypto map template_name { ikev2-ipv4 | ikev2-ipv6 }
whitelist
Context Configuration Mode – crypto template
The following Context Configuration Mode commands have been added in support of IPSec Common Features in a
crypto template.
crypto template.
allow-cert-enc cert-hash-url
Enables hash and URL encoding in a crypto template.
configure
context <ctxt_name>
crypto template template_name ikev2-dynamic
allow-cert-enc cert-hash-url
blacklist
Enables blacklisting in a crypto template.
configure
context <ctxt_name>
crypto template template_name ikev2-dynamic
blacklist
identity local
Configures the identity of the local IPSec Client (IKE ID).
configure
context <ctxt_name>
crypto template template_name ikev2-dynamic
identity local id-type type id name
type
configures the IKE identity that the local client uses when authenticating to the gateway. Valid values are:
der-ans1-dn
: configures NAI Type DER_ASN1_DN (Distinguished Encoding Rules, ASN.1 encoding,
Distinguished Name)
fqdn
: configures NAI Type ID_FQDN (Internet Fully Qualified Domain Name).