To use the online configuration method to set up digital certificates on the router:
- host1(config)#ipsec ike-policy-rule 1
- host1(config-ike-policy)#authentication rsa-sig
- host1(config-ike-policy)#exit
![]() |
Note: For more information about setting up IKE policies, see Defining an IKE Policy in Configuring IPSec. |
authentication
crl
enrollment retry-limit
enrollment retry-period
enrollment url
ipsec ca authenticate
- host1(config)#ipsec ca authenticate trustedca1
- host1(config)#INFO 10/18/2003 03:45:16 ikeEnrollment ():
Received CA certificate for ca:trustedca1
- INFO 10/18/2003 03:45:16 ikeEnrollment (): Received CA
certificate for ca:trustedca1 fingerprint:28:19:ba:76:d8:e0:bb:22:60:cd:b9:2d:dc:b8:58:01
- host1(config)#
ipsec ca enroll
ipsec ca identity
ipsec ike-policy-rule
![]() |
Note: This command replaces ipsec isakmp-policy-rule , which may be removed completely in a future release. |
ipsec isakmp-policy-rule
![]() |
Note: This command has been replaced by ipsec ike-policy-rule and may be removed completely in a future release. |
ipsec key generate
ipsec key zeroize
issuer-identifier
root proxy url