06.02.2014 Views

User's Guide Command Line Interface - QLogic

User's Guide Command Line Interface - QLogic

User's Guide Command Line Interface - QLogic

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

3–Network Configuration<br />

Managing IP Security<br />

Deleting a Policy<br />

To delete a user-defined policy, enter the Ipsec Policy Delete command as shown<br />

in the following example:<br />

SANbox #> admin start<br />

SANbox (admin) #> ipsec edit<br />

SANbox (admin-ipsec) #> ipsec policy delete policy_1<br />

The security policy will be deleted. Please confirm (y/n): [n] y<br />

SANbox (admin-ipsec) #> ipsec save<br />

The IPsec configuration will be saved and activated.<br />

Please confirm (y/n): [n] y<br />

Modifying a User-Defined Policy<br />

To modify an existing user-defined policy, enter the Ipsec Policy Edit command in<br />

an Admin session and an Ipsec Edit session as shown in the following example.<br />

An asterisk (*) indicates a required entry.<br />

SANbox (admin-ipsec) #> ipsec policy edit h2h-sh-sp<br />

A list of attributes with formatting and current values will follow.<br />

Enter a new value or simply press the ENTER key to accept the current value.<br />

To remove a value for an optional attribute, use ’n’.<br />

If you wish to terminate this process before reaching the end of the list<br />

press 'q' or 'Q' and the ENTER key to do so.<br />

Current Values:<br />

Description<br />

.<br />

.<br />

.<br />

espRuleLevel<br />

Host-to-host: switch->host<br />

require<br />

New Value (press ENTER to not specify value, 'q' to quit, 'n' for none):<br />

Description (string value, 0-127 bytes) :<br />

*SourceAddress (IPv4, IPv6 or hostname/[PrefixLength]) :<br />

SourcePort (decimal value, 1-65535) :<br />

*DestinationAddress (IPv4, IPv6 or hostname/[PrefixLength]) :<br />

DestinationPort (decimal value, 1-65535) :<br />

*Protocol (decimal value, or keyword)<br />

Allowed keywords<br />

icmp, icmp6, ip4, tcp, udp or any<br />

: tcp<br />

*Direction (1=in, 2=out) :<br />

Priority (value, -2147483647 to +2147483647) :<br />

*Action (1=discard, 2=none, 3=ipsec) :<br />

Mode (1=transport, 2=tunnel) :<br />

*TunnelSource (IPv4, or IPv6 Address) :<br />

*TunnelDestination (IPv4, or IPv6 Address) :<br />

*ProtectionDesired (select one, transport-mode only)<br />

1=ah Authentication Header<br />

3-14 59263-02 B

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!