User manual
Global Configuration Commands
5-25
isakmp
[client|keepalive|key|
peer|policy]
Configures the Internet Security Association and Key
Management Protocol (ISAKMP) policy.
• client configuration (group) (default) – Leads to the
config-cryptogroup instance.
For more details see Crypto-group Instance on page 7-1.
• keepalive <10-3600> – Sets a keepalive interval for use
with remote peers. It defines the number of seconds
between DPD messages.
• key [0 <key>|2 <key>|<key>] [address|hostname] – Sets a
pre-shared key for remote peer.
• 0 <key> – Password is specified unencrypted.
• 2 <key> – Password is encrypted with password-
encryption secret
• <key> – User provided password.
• address – Defines a shared key with an
IP address.
• hostname – Defines the shared key with a hostname.
• peer [address|dn|hostname] – Sets the remote peer.
• address – The IP address is the identity of the remote
peer.
• dn – The identity of the remote peer is the
distinguished name.
• hostname –The hostname is the identity of the remote
peer.
• policy <1-10000> – Sets a policy for a ISAKMP protection
suite.