Chapter 3. Command Reference
enables phase 2
Note: To enable phase 2
specifies the name of the CA certificate, if you are using certificates for authentication.
dpd < enable disable >
enables dead peer detection.
configures the identifier that the device will use for validation purposes. Use this if you are using
Note: The local IDs for the email address and domain name types are configured in the IKE Proposal. The local ID for the IP address type is the WAN IP address.
specifies the name of the local certificate if you are using certificates for authentication.
enables
selects the identifier for the device to use for validation purposes, either IP address, email address or domain name. This must match the local ID type.
pfs < enable disable >
enables or disables Perfect Forward Secrecy.
selects the
configures encryption for IKE phase 1. Some options are only valid on the High Encryption agent, which can be downloaded from the TMC.
configures integrity for IKE phase 1.
72 X Family CLI Reference V 2.5.1