To use the offline method to set up digital certificates on the router:
- host1(config)#ipsec ike-policy-rule 1
- host1(config-ike-policy)#authentication rsa-sig
- host1(config-ike-policy)#exit
- host1(config)#
![]() |
Note: For more information about setting up IKE policies, see Defining an IKE Policy in Configuring IPSec. |
authentication
common-name
country
domain-name
ike crl
![]() |
Note: This command has been replaced by ipsec crl and may be removed completely in a future release. |
ipsec certificate-database refresh
![]() |
Note: On reload, the router scans all certificate files and determines which files are router public certificates and which are root CA certificates. |
ipsec certificate-request generate
ipsec crl
![]() |
Note: This command replaces ike crl , which may be removed completely in a future release. |
ipsec identity
ipsec ike-policy-rule
![]() |
Note: This command replaces ipsec isakmp-policy-rule , which may be removed completely in a future release. |
ipsec isakmp-policy-rule
![]() |
Note: This command has been replaced by ipsec ike-policy-rule and may be removed completely in a future release. |
ipsec key generate
ipsec key zeroize
organization