User's Manual

260 Appendix G Command Interpreter
N0115791
encap <0:Tunnel |
1:Transport>
Sets the encapsulation mode.
pfs <0:None | 1:DH1
| 2:DH2>
Sets Perfect Forward Secrecy.
antiReplay <Yes | No>
Turns replay detection on or off.
connType <0:Branch
Office |
1:Contivity
Client>
Specifies whether the rule is for a branch
office or Contivity Client VPN connection.
authOptions <0:Username
Password |
1:Group ID &
Password
Sets the BCM50a Integrated Router to
either send just the username and
password to the remote Contivity IPSec
router, or a group ID and password as
well.
onDemand <on | off>
Sets whether or not outgoing packets can
automatically trigger a VPN connection to
the remote Contivity IPSec router.
ODService [netbios] [ntp]
[none]...
Sets which specific services can
automatically trigger a VPN connection to
the remote Contivity IPSec router.
groupID <group ID>
Sets the Contivity Client tunnel’s user’s
group ID.
groupPasswd <group
password>
Sets the Contivity Client tunnel’s user’s
group password.
username <name>
Sets the Contivity Client tunnel’s user’s
username.
password <password>
Sets the Contivity Client tunnel’s user’s
password.
exUseMode [enable|disable
]
Turns the exclusive use mode for the
Contivity Client tunnel on or off.
exUseMac [MAC address]
Specifies which MAC address is allowed
to use the Contivity Client tunnel with
exclusive use mode.
clientFailOver <IP address>
<IP address>
<IP address>
Sets the Contivity Client fail over IP
addresses (of back up remote Contivity
IPSec routers).
keepAlive <Yes|No>
Turns the Keep Alive feature on or off.
ikeList
Displays a summary of the IKE (phase 1)
rules.
Table 60 IPSec commands
Command Description