SIP User's Manual 212 Document #: LTRT-68806
Mediant 2000 & TP-1610 & TP-260/UNI
Table 5-42: IPSec SPD Table Configuration Parameters
Parameter Name Description
First to Fourth Proposal
Encryption Type
[IPSecPolicyProposalEncr
yption_X]
Determines the encryption type used in the quick mode negotiation for
up to four proposals.
X stands for the proposal number (0 to 3).
The valid encryption values are:
 Not Defined (default)
 [0] None = No encryption
 [1] DES-CBC
 [2] Triple DES-CBC
 [3] AES-CBC
First to Fourth Proposal
Authentication Type
[IPSecPolicyProposalAuth
entication_X]
Determines the authentication protocol used in the quick mode
negotiation for up to four proposals.
X stands for the proposal number (0 to 3).
The valid authentication values are:
 Not Defined (default)
 [2] HMAC-SHA-1-96
 [4] HMAC-MD5-96
If no IPSec methods are defined (Encryption / Authentication), the default settings (shown
in the following table) are applied.
Table 5-43: Default IKE Second Phase Proposals
Proposal Encryption Authentication
Proposal 0
3DES SHA1
Proposal 1
3DES MD5
Proposal 2
DES SHA1
Proposal 3
DES MD5
¾ To configure the IPSec SPD table using the ini file:
îš„ The IPSec SPD table is configured using ini file tables (described in 'Structure of ini
File Parameter Tables' on page 269). Each line in the table refers to a different IP
destination. The Format line (SPD_INDEX in the example below) specifies the order in
which the actual data lines are written. The order of the parameters is irrelevant.
Parameters are not mandatory unless stated otherwise. To support more than one
Encryption / Authentication proposals, for each proposal specify the relevant
parameters in the Format line. Note that the proposal list must be contiguous.