In this section:
This object specifies the name of the Internet Key Exchange (IKE) peer database entry. This name identifies an entry in the IKE Peer Database (IPD). The IPD is a list of remote devices that may become IPSec peers. The IPD establishes the authentication and other phase 1 criteria for the peer-to-peer negotiation to eventually reach an IKE Security Association (SA) between this specific peer and the SBC.
On the SBC main screen, navigate to All > Address Context > Ipsec > Peer.
The Peer can be checked for each Address Context or for all the Address Contexts created. Use the drop-down box to select the desired Address Contexts.
The Peer window is displayed.
To edit any of the Peer in the list, click the radio button next to the specific Peer name.
The Edit Selected Peer window is displayed below.
Make the required changes and click Save at the right hand bottom of the panel to save the changes made.
To create a new Peer, click New Peer tab on the Peer List panel.
The Create New Peer window is displayed.
The following fields are displayed:
Parameter | Description |
---|---|
| Specifies the name of the peer you are configuring. |
| Specifies the 32-bit IP address of the Peer. |
| The SPD traffic selector IP PROTOCOL. Valid values for this parameter are:
|
| Specifies the pre-shared secret key with this peer. The SBC accepts the pre-shared key in the following formats:
In either case the given value represents a "pre-shared secret" between the SBC and the IKE peer. This value is used for mutual authentication for phase 1 negotiation to set up an IKE Security association. Ribbon strongly recommends using unpredictable (difficult to guess) values. Use a unique value for each IKE peer. This string is never displayed in plaintext when using the
show commands. |
| The name of the ike protection profile to be applied to the Key management protocol exchange with this peer. |
Local Identity | This object specifies the local identity type that the SBC asserts to the peer during phase 1 authentication. |
The ipVxAddr
attribute is not used at this time. If it is present, ignore it.
To copy any of the created Peer and to make any minor changes, click the radio button next to the specific Peer to highlight the row.
Click Copy Peer tab on the Peer List panel.
The Copy Selected Peer window is displayed along with the field details which can be edited.
The ipVxAddr
attribute is not used at this time. If it is present, ignore it.
Make the required changes to the required fields and click Save to save the changes. The copied Peer is displayed at the bottom of the original Peer in the Peer List panel.
To delete any of the created Peer, click the radio button next to the specific Peer which you want to delete.
Click Delete at the end of the highlighted row. A delete confirmation message appears seeking your decision.
Click Yes to remove the specific Peer from the list.