Inside-Vpn - HP MSR Series Command Reference Manual

Hide thumbs Also See for MSR Series:
Table of Contents

Advertisement

If the ike signature-identity from-certificate command is not configured, the local-identity command
configuration, if configured, takes precedence over the ike identity command configuration.
Examples
# Configure the local device to always obtain the identity information from the local certificate for
signature authentication.
<Sysname> system-view
[sysname] ike signature-identity from-certificate
Related commands
local-identity
ike identity

inside-vpn

Use inside-vpn to specify an inside VPN instance for an IKE profile.
Use undo inside-vpn to remove the inside VPN instance configuration.
Syntax
inside-vpn vpn-instance vpn-name
undo inside-vpn
Default
No inside VPN instance is specified for an IKE profile, and the device forwards protected data to the
VPN instance with the same name as the VPN instance on the external network.
Views
IKE profile view
Predefined user roles
network-admin
Parameters
vpn-instance vpn-name: Specifies the MPLS L3VPN to which the device forwards protected data. The
vpn-name argument is a case-sensitive string of 1 to 31 characters.
Usage guidelines
This command determines where the device should forward received IPsec protected data. If you
configure this command, the device looks for a route in the specified VPN to forward the data. Otherwise,
the device looks for a route in the same VPN instance as that on the external network and forwards the
data to the VPN instance.
Examples
# Set the inside VPN instance to vpn1 for IKE profile prof1.
<Sysname> system-view
[Sysname] ike profile prof1
[Sysname-ike-profile-prof1] inside-vpn vpn-instance vpn1
370

Advertisement

Table of Contents
loading

Table of Contents