TMS zl Management and Configuration Guide ST.1.1.100226

A-124
Command-Line Reference
IKEv1 Context
To configure the module to act as an XAUTH client, enter the following
command:
Syntax: xauth client auth-type <generic | chap> username <username>
Replace <username> with the username accepted by the remote gateways
authentication server (which can include alphanumeric and special charac-
ters). After you enter the command, you will be prompted to enter a password.
To configure the module to act as an XAUTH server, enter the following
command
Syntax: xauth server auth-type <generic | chap>
To disable XAUTH, enter the following command
Syntax: no xauth
Example IKEv1 Policy
The following is the complete command set to create an IKEv1 policy with the
settings detailed in Table A-38.
Table A-38. Example IKEv1 Policy
ProCurve(tms-module-<slot ID>:config)# ipsec ikev1
iketest
Parameter TMS zl Module Setting
Type of policy Site-to-Site
Local gateway VLAN 50
Remote gateway 172.15.16.2
Local ID IP address—10.10.50.54
Remote ID IP address—172.15.16.2
Key exchange mode Main
Authentication method Pre-shared key—procurvetestvpn
Diffie-Hellman group Group 1 (768)
Encryption algorithm 3DES
Authentication algorithm MD5
SA lifetime 28800
XAUTH Disabled