configure
key
selects and configures the keying mode. Some options are only valid on the High Encryption agent, which can be downloaded from the TMC.
manual
<
configures manual mode.
ike proposal
configures IKE proposal. If included, the shared secret must be at least 8 characters long.
negotiate
starts negotiation of the tunnel.
peer ip
configures the IP address of the terminating VPN unit or network device (the remote target of the VPN link).
transport < enable disable >
enables or disables transport mode. Use this if you are using L2TP or if you are configuring a Security Association to use with a GRE interface.
tunnel
controls tunneling.
disable
disables tunneling.
enable
enables tunneling.
local <
select the source IP addresses that are allowed to use this IPSec tunnel by specifying an IP address group, subnet, or range. You should use an IP address group that contains all the source IP addresses of devices that can use the IPSec tunnel.
Choose
nat < disable ip >
enables or disables NAT tunneling.
X Family CLI Reference V 2.5.1 | 75 |
|
|