User`s manual

SIP User's Manual 128 Document #: LTRT-83303
Mediant 1000 & Mediant 600
Table 3-28: IPSec SPD Table Configuration Parameters
Parameter Name Description
IPSec Mode
[IPSecMode]
Defines the IPSec mode of operation.
[0] Transport (Default)
[1] Tunneling
Remote Tunnel IP Address
[IPSecPolicyRemoteTunne
lIPAddress]
Defines the IP address of the remote IPSec
tunneling device.
Note: This parameter is only available if the
parameter IPSecMode is set to Tunneling (1).
Remote Subnet Mask
[IPsecPolicyRemoteSubne
tMask]
Defines the subnet mask of the remote IPSec
tunneling device.
The default value is 255.255.255.255 (i.e., host-to-
host IPSec tunnel).
Note: This parameter is only available if the
parameter IPSecMode is set to Tunneling (1).
Remote IP Address
[IPSecPolicyRemoteIPAdd
ress]
Destination IP address (or FQDN) to which the
IPSec mechanism is applied.
Notes:
This parameter is mandatory.
When an FQDN is used, a DNS server must be
configured (DNSPriServerIP).
Local IP Address Type
[IPSecPolicyLocalIPAddre
ssType]
Determines the local interface to which the
encryption is applied (applicable to multiple IPs
and VLANs).
[0] OAM = OAMP interface (default).
[1] Control = Control interface.
Source Port
[IPSecPolicySrcPort]
Defines the source port to which the IPSec
mechanism is applied.
The default value is 0 (i.e., any port).
Destination Port
[IPSecPolicyDstPort]
Defines the destination port to which the IPSec
mechanism is applied.
The default value is 0 (i.e., any port).
Protocol
[IPSecPolicyProtocol]
Defines the protocol type to which the IPSec
mechanism is applied.
0 = Any protocol (default).
17 = UDP.
6 = TCP.
Any other protocol type defined by IANA
(Internet Assigned Numbers Authority).
IPSec is applied to
outgoing packets
whose IP address,
destination port,
source port, and
protocol type match
the values defined
for these
parameters.
Related Key Exchange
Method Index
[IPsecPolicyKeyExchange
MethodIndex]
Determines the index for the corresponding IKE entry. Note that several
policies can be associated with a single IKE entry.
The valid range is 0 to 19. The default value is 0.