Version (Ipsec) - Allied Telesis AT-AR3050S Command Reference Manual

Next-generation firewall
Hide thumbs Also See for AT-AR3050S:
Table of Contents

Advertisement

IP
C
SEC
OMMANDS
(IP
)
VERSION
SEC

version (IPsec)

Overview
Use this command to set the ISAKMP protocol version.
Use the no variant to set the protocol version to default (IKEv2).
Syntax
version {1 mode {aggressive|main}|2}
no version
Default
If you do not specify the version, the default version is IKEv2
Mode
IPsec ISAKMP Configuration
Examples
To set the ISAKMP protocol version of profile "my_profile" to IKEv1 main mode, use
the following commands:
awplus(config)#
awplus(config-isakmp-profile)#
To set the version to its default, use the following command:
awplus#
Related
crypto isakmp profile
Commands
Validation
show isakmp profile
Commands
C613-50077-01 REV A
Parameter
Description
1
IKEv1
main
IKEv1 Main mode. An IKE session begins with the initiator and
recipient sending three two-way exchanges to define what
encryption and authentication protocols are acceptable, how
long keys should remain active, and whether perfect forward
secrecy should be enforced. Main mode uses more packets for
the process than Aggressive mode, but Main mode is considered
more secure.
aggressive
IKEv1 Aggressive mode. The initiator and recipient accomplish
the same objectives, but in only two exchanges.
2
IKEv2
configure isakmp profile my_profile
no version
Command Reference for AT-AR3050S
AlliedWare Plus™ Operating System - Version 5.4.5-2.x
version 1 mode main
2320

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents