Re: Authentications options in IKE

From: Chris Larson (clarson52@xxxxxxxxxxx)
Date: Mon Apr 08 2002 - 18:24:50 GMT-3


   
Sneakernet. Cut and paste and walk it over. Incidentally if you have
Microsoft 2000 advanced server and the resource kit you can setup a CA
server to manage your keys/certs for Cisco product and it is quite easy to
setup and use.

----- Original Message -----
From: "Jaspreet Bhatia" <jasbhati@cisco.com>
To: <ccielab@groupstudy.com>
Sent: Monday, April 08, 2002 2:54 PM
Subject: Authentications options in IKE

> Folks,
> I understand that there are 3 options when configuring
> auth in IKE
> 1) Manually configuring pre-shared auth keys
>
> 2) Using a CA server
>
> 3) Manually generating the RSA key pair .
>
> My question is about the third option
>
> You use the command
>
> # cry key gen rsa usage-keys
>
> This will generate the key-pair one for encryption and one for digital
> signature
>
> you can now see the keys by using the following command
>
> # show cry key mypubkey rsa
>
>
> Now my question is really simple . How do yu use this key pair on the
> remote router . If you are supposed to copy the key to the remote router ,
> what command do you use to configure it on the remote end . Thanks
>
> Jaspreet



This archive was generated by hypermail 2.1.4 : Thu Jun 13 2002 - 10:58:00 GMT-3