Example 194 Verifying the IKE Policy

NewYork#configure terminal

NewYork (config)#crypto isakmp key abc123 address 192.168.3.1 255.255.255.255

NewYork (config)#crypto isakmp policy 100

NewYork (config-isakmp)#authentication pre-share

NewYork (config-isakmp)#encryption aes 256

NewYork (config-isakmp)#hash sha

NewYork (config-isakmp)#group 5

NewYork (config-isakmp)#lifetime 86400

NewYork (config-isakmp)#exit

NewYork#sh crypto isakmp policy

Global IKE policy

Protection suite of priority 100

encryption algorithm: AES - Advanced Encryption Standard (256 bit keys)

hash algorithm: authentication method: Diffie-Hellman group: lifetime: Default protection suite encryption algorithm: hash algorithm:

Secure Hash Standard Pre-Shared Key #5 (1536 bit)

86400 seconds, no volume limit

DES - Data Encryption Standard Secure Hash Standard

0 0

Post a comment