
Step 3—Configuring Encryption
Cisco 7100 Series VPN Configuration Guide
3-18
Verifying IKE Policies
To verify the configuration:
• Enterthe show crypto isakmp policyEXEC command to see the defaultpolicy andany
default values within configured policies.
hq-sanjose# show crypto isakmp policy
Protection suite priority 1
encryption algorithm: DES - Data Encryption Standard (56 bit keys)
hash algorithm: Secure Hash Standard
authentication method: Pre-Shared Key
Diffie-Hellman group: #1 (768 bit)
lifetime: 86400 seconds, no volume limit
Note Although the above output shows “no volume limit” for the lifetimes, you can
currently only configure a time lifetime (such as 86400 seconds); volumelimit lifetimes are
not configurable.
Tips
Ifyou havetrouble, use the show versioncommand to ensure your Cisco 7100 series router
is running a Cisco IOS software image that supports crypto.
hq-sanjose# show version
Cisco Internetwork Operating System Software
IOS (tm) EGR Software (c7100-JOS56I-M), Release Version 12.0(4)XE
Copyright (c) 1986-1999 by cisco Systems, Inc.
Compiled Mon 22-Mar-99 21:41 by biff
Image text-base:0x600088F8, data-base:0x611CE000
ROM:System Bootstrap, Version 12.0(4)XE RELEASE SOFTWARE
router uptime is 20 hours, 34 minutes
System restarted by reload at 22:36:57 PST Fri Dec 31 1999
System image file is "c7100-jos56i-mz"
cisco 7140 (EGR) processor with 188416K/139264K bytes of memory.
R7000 CPU at 262Mhz, Implementation 39, Rev 1.0, 256KB L2, 2048KB L3
Cache
Last reset from power-on
Comentarios a estos manuales