Carrier Access none manual Reconnect, Rekey, Remote-ip

Models: none

1 496
Download 496 pages 60.9 Kb
Page 337
Image 337

Configuration - IPSec Mode

reconnect

Use the IPSec reconnect command to enable the automatic reconnection option. To disable reconnection, see no reconnect command on page 14-15.

Syntax: (config-ipsec-{n})# reconnect

Example: (config-ipsec-1)# reconnect

Supported Platforms: Adit 3104, Adit 3200, Adit 3500, MSR

rekey

Use the IPSec rekey command to set the rekey lifetime, rekey margin and rekey fuzz percent.

Syntax: (config-ipsec-{n})# rekey lifetime seconds margin margin percent

percent

Field

Definition

seconds

Set the connection rekey lifetime. Range is 1-28800 seconds, with a

 

default of 3600.

 

 

margin

Set the rekey margin number. Range is 1-540, with a default of 540.

 

 

percent

Set the rekey fuzz percent. Range 1-200, with a default of 100.

 

 

Example: (config-ipsec-1)# rekey lifetime 3 margin 500 percent 200

Supported Platforms: Adit 3104, Adit 3200, Adit 3500, MSR

remote-ip

Use the IPSec remote-ipcommand to modify a remote tunnel endpoint address.

Syntax: (config-ipsec-{n})# remote-ip address

Field

Definition

address

Enter a remote IP address.

 

 

Syntax: (config-ipsec-1)# remote-ip 10.10.2.10

Supported Platforms: Adit 3104, Adit 3200, Adit 3500, MSR

Adit 3000 (Rel. 1.6) and MSR Card (Rel 2.0) CLI

14-17

Page 337
Image 337
Carrier Access none manual Reconnect, Rekey, Remote-ip