Concept Guide

Table Of Contents
crypto isakmp
crypto isakmp
address <peer-address> netmask <mask>}
disable
eap-passthrough eap-mschapv2|eap-peap|eap-tls
enable
groupname <name>
key <keystring> address <peer-address> netmask <mask>
udpencap-behind-natdevice enable|disable
packet-dump
Description
This command configures Internet Key Exchange (IKE) parameters for the Internet Security Association and Key
Management Protocol (ISAKMP).
Syntax
Parameter Description
address
Configure the IP address for the group key.
<peer-address>
IP address for the group key, in dotted-decimal format.
netmask
Configure the IP netmask for the group key.
<mask>
Subnet mask for the group key.
disable
Disable IKE processing.
eap-passthrough
Select one of the following authentication types for IKEv2 user
authentication using EAP.
l eap-mschapv2
l eap-peap
l eap-tls
enable
Enable IKE processing.
groupname
Configure the IKE Aggressive group name. Aggressive-mode IKE is a 3-
packet IKE exchange that does not provide identity-protection, but is
faster, because fewer messages are exchanged.
<name>
Name of the IKE aggressive group.
key
Configure the IKE preshared key.
<keystring>
Configure the value of the IKE PRE-SHARED key. The key must be
between 6-64 characters long.
Dell Networking W-Series ArubaOS 6.5.x | Reference Guide crypto isakmp | 305