27.03.2013 Views

Cisco Broadband Cable Command Reference Guide

Cisco Broadband Cable Command Reference Guide

Cisco Broadband Cable Command Reference Guide

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Chapter 5 <strong>Cable</strong> CPE <strong>Command</strong>s<br />

Related <strong>Command</strong>s<br />

OL-1581-05<br />

Table 5-17 show crypto engine brief Field Descriptions<br />

show crypto engine brief<br />

Field Description<br />

crypto engine name Name of the crypto engine as assigned with the key-name<br />

argument in the crypto key generate dss command. If no name<br />

has been assigned, this field shows “unknown.”<br />

crypto engine type The type of encryption engine running, always “ISA/ISM” and<br />

“software” for the <strong>Cisco</strong> uBR905 and <strong>Cisco</strong> uBR925 cable<br />

access routers.<br />

hifn chip id, rev, and api rev Identifies the hardware accelerator, the revision of its onboard<br />

firmware, and the revision of the software application layer.<br />

Compression Identifies whether packets are compressed as well as encrypted.<br />

3DES Identifies whether Triple DES (3DES) 168-bit encryption is<br />

supported.<br />

crypto engine state The current run-time state of the crypto engine:<br />

installed—Indicates that the crypto engine is present but is<br />

not configured for encryption.<br />

dss key generated—Indicates that the crypto engine has<br />

DSS keys already generated.<br />

crypto engine in slot The chassis slot number containing the crypto engine. This<br />

field is always N/A for the <strong>Cisco</strong> uBR905 and <strong>Cisco</strong> uBR925<br />

cable access routers because the engine is not in a slot but is<br />

permanently onboard the routers.<br />

Tip In <strong>Cisco</strong> IOS Release 12.2(8)T and later releases, you can add a timestamp to show commands using the<br />

exec prompt timestamp command in line configuration mode.<br />

<strong>Command</strong> Description<br />

clear crypto engine accelerator<br />

counter<br />

Resets the statistical and error counters for the hardware accelerator<br />

to zero.<br />

crypto ca Defines the parameters for the certification authority used for a<br />

session.<br />

crypto cisco Defines the encryption algorithms and other parameters for a<br />

session.<br />

crypto dynamic-map Creates a dynamic map crypto configuration for a session.<br />

crypto engine accelerator Enables the use of the <strong>Cisco</strong> uBR905 and <strong>Cisco</strong> uBR925 router’s<br />

onboard hardware accelerator for IPSec encryption.<br />

crypto ipsec Defines the IPSec security associations and transformation sets.<br />

crypto isakmp Enables and defines the IKE protocol and its parameters.<br />

crypto key Generates and exchanges keys for a cryptographic session.<br />

crypto map Creates and modifies a crypto map for a session.<br />

<strong>Cisco</strong> <strong>Broadband</strong> <strong>Cable</strong> <strong>Command</strong> <strong>Reference</strong> <strong>Guide</strong><br />

5-135

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!