Re: Authentications options in IKE

From: tom cheung (tkc9789@xxxxxxxxxxx)
Date: Mon Apr 08 2002 - 17:21:05 GMT-3


   
If I remembered correctly, you have to copy the pubkey over to the remote
peer. Then issue the command "crypto key pubkey rsa" and paste in the key.

>From: Jaspreet Bhatia <jasbhati@cisco.com>
>Reply-To: Jaspreet Bhatia <jasbhati@cisco.com>
>To: ccielab@groupstudy.com
>Subject: Authentications options in IKE
>Date: Mon, 08 Apr 2002 11:54:34 -0700
>
>Folks,
> I understand that there are 3 options when configuring
>auth in IKE
>1) Manually configuring pre-shared auth keys
>
>2) Using a CA server
>
>3) Manually generating the RSA key pair .
>
>My question is about the third option
>
>You use the command
>
># cry key gen rsa usage-keys
>
>This will generate the key-pair one for encryption and one for digital
>signature
>
>you can now see the keys by using the following command
>
># show cry key mypubkey rsa
>
>
>Now my question is really simple . How do yu use this key pair on the
>remote router . If you are supposed to copy the key to the remote router ,
>what command do you use to configure it on the remote end . Thanks
>
>Jaspreet



This archive was generated by hypermail 2.1.4 : Thu Jun 13 2002 - 10:58:00 GMT-3