Vpn Ipsec: Dead Peer Detection - Alcatel-Lucent OmniAccess 700 User Manual

Web gui release versions: 2.2; 2.2-r02; 2.3
Hide thumbs Also See for OmniAccess 700:
Table of Contents

Advertisement

The table below provides field description for IKE Policy page.
Table 22: IKE Policy Field Description
IKE P
OLICY
Name
Proposal
Lifetime in seconds
IPsec Policy Reference
Action
New
C
ONFIGURE
DPD enables IPsec to identify the loss of peer connectivity. It helps to recognize
black holes as soon as possible and recover lost resources. By default, DPD is
turned off. A global configuration is available so that all connections follow the
same DPD configuration. Each connection can override the global DPD
configuration by specifying its own DPD policy in its crypto map.
Note:
Currently Global DPD is supported in GUI. You can configure the DPD at the crypto
map level through CLI.
The DPD provided in the IKE page configures the DPD globally with the interval in
seconds for which the keep-alive messages will be sent, and the time-out in
seconds after which the peer will be declared to be dead. The default value for
DPD time-out is three times that of the DPD interval specified.
Follow the procedure below to configure DPD.
Step 1: In the IKE Policy page, click Edit under Dead Peer Detection box to enter
the DPD values.
Figure 127: VPN IPsec: Dead Peer Detection
Web GUI Users Guide
Beta
Field
D
P
D
(DPD)
EAD
EER
ETECTION
Alcatel-Lucent
Except on the first page, right running head:
Heading1 or Heading1NewPage text (automatic)
Description
Name of the IKE policy.
Encryption algorithm to be used.
Lifetime of the policy, in seconds.
Lists IPsec policy/policies to which the
particular IKE policy is attached.
Provides option to edit or delete an IKE
policy, and view IKE policy details.
Create new/edit IKE policy.
Configure
203
Beta

Advertisement

Table of Contents
loading

Table of Contents