TMS zl Management and Configuration Guide ST.1.2.100916

A-158
Command-Line Reference
IPsec Policy Context
Table A-43. IPsec Policy Traffic Selector Command Options
For example:
hostswitch(tms-module-<slot ID>:ipsec:bypass)# traffic-
selector protocol tcp local 10.1.2.0/24 port 20 remote
ip-range 192.168.2.1 192.168.2.12 port 21
preview
Before you apply the IPsec policy, you should preview it to make sure
everything is correct. To preview your policy, enter the following command
from any IPsec policy context:
Syntax: preview
Parameter Options
protocol •any
<1-255>
•ah
•esp
•ip
•igmp
•gre
•l2tp
•ospf
•pim
tcp [port <any | port number>] *
udp [port <any | port number>] *
icmp < any | echo** | timestamp** >
address •any
•host <IP address>
network address/prefix length
ip-range <start IP address> <end IP address>
address <address object>
*If you use TCP or UDP for the traffic selector, you must enter port and specify a port
after both the local address and the remote address.
**If you select echo or timestamp, the tunnel must use manual keying instead of IKE
in your IPsec policy.