Huawei AR1200 series Configuration Manual page 362

Enterprise routers
Hide thumbs Also See for AR1200 series:
Table of Contents

Advertisement

Huawei AR1200 Series Enterprise Routers
Configuration Guide - VPN
Procedure
Step 1 Run:
system-view
The system view is displayed.
Step 2 Run:
ipsec profile profile-name
An IPSec profile is created and the IPSec profile view is displayed.
Step 3 Run:
ike peer peer-name
An IKE peer is bound to the IPSec profile.
By default, no IKE peer is bound to any IPSec profile.
Step 4 Run:
proposal proposal-name
An IKE proposal is bound to the IPSec profile.
By default, no IKE proposal is bound to any IPSec profile.
Step 5 Run:
pfs { dh-group1 | dh-group2 | dh-group5 | dh-group14 }
The router is configured to use Perfect Forward Secrecy (PFS) in IPSec negotiation.
By default, PFS is not used in IPSec negotiation.
Step 6 Run:
quit
Return to the system view.
Step 7 Run:
interface tunnel interface-number
The tunnel interface view is displayed.
Step 8 Run:
tunnel-protocol { gre [
The tunnel encapsulation mode is configured.
A tunnel interface can be bound to an IPSec profile only when the encapsulation mode of the
tunnel interface is set to IPSec, GRE, or Multipoint GRE (MGRE).
Step 9 Run:
ipsec profile profile-name
Issue 01 (2012-04-20)
NOTE
For the detailed configuration of an IKE peer, see
NOTE
For the detailed configuration of an IKE proposal, see
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
5.4.4 Configuring an IKE
5.4.5 Configuring an IPSec
p2mp ] | ipsec | ipv4-ipv6 | none }
6 DSVPN Configuration
Peer.
Proposal.
351

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Ar3200 series

Table of Contents