CSCF Crypto Template Configuration Mode Commands

The CSCF Crypto Template Configuration Mode is used to configure a P-CSCF IPsec policy. It includes most of the IPsec parameters and Internet Key Exchange version 1 (IKEv1) parameters for cryptographic and authentication algorithms etc. A P-CSCF service will not support IPSec without a configured crypto template. Only one crypto template can be configured per P-CSCF service.

IMPORTANT:

The commands or keywords/variables that are available are dependent on platform type, product version, and installed license(s).

end

Exits the current mode and returns to the Exec Mode.

Product:

All


Privilege:

Security Administrator, Administrator


Syntax
end

Usage:

Change the mode back to the Exec Mode.

exit

Exits the current mode and returns to the previous mode.

Product:

All


Privilege:

Security Administrator, Administrator


Syntax
exit

Usage:

Returns to the previous mode.

ipsec

Configures parameters for the 3GPP/3GPP2 P-CSCF security associations within this crypto template.

Platform:

ASR 5000

Product:

SCM


Privilege:

Security Administrator, Administrator


Syntax
ipsec transform-set
list list_name
transform-set list name

transform-set: Specifies a context-level IPSec security association transform set to be used for deriving 3GPP/3GPP2 P-CSCF security associations from this crypto template.

list list_name: A space separated list of 3GPP/3GPP2 P-CSCF security association transform sets. list_name must be an existing 3GPP/3GPP2 P-CSCF transform set and be from 1 to 127 alpha and/or numeric characters.

IMPORTANT:

A minimum of one transform set is required. A maximum of four transform sets may be specified.


Usage:

Use this command to configure parameters for the 3GPP/3GPP2 P-CSCF security associations within this crypto template.


Example:
The following command configures the 3GPP/3GPP2 P-CSCF transform set list name to ikev1list1:
ipsec transform-set list ikev1list1