protect crypto map

Last Updated : Nov 06, 2012 |

Protects traffic that matches this rule, by applying the IPSec processing configured by the specific crypto map. Use no protect crypto map to specify that traffic matching this IP rule should not be protected. Traffic that matches this rule bypasses IPSec processing, and continues unprotected.

Note:

You cannot enable or disable crypto map protection when the crypto-list is active. You must first deactivate the list using the no ip crypto-group command in the context of the interface on which the crypto-list is activated.

Syntax

protect crypto map crypto-map-id

no protect

Parameters

Parameter

Description

Possible Values

Default Value

crypto-map-id

The ID of the crypto map

1-50

User level

read-write

Context

ip crypto-list/ip-rule

Examples

To protect traffic by applying the IPSec processing configured by crypto map 5:

Gxxx-001(crypto 901/ip rule 21)# protect crypto map 5