Displaying And Maintaining Ike; Ike Configuration Example - HP 12500 Series Configuration Manual

Routing
Table of Contents

Advertisement

payload is the last payload of the packet. However, it may be set to other values on some brands of
devices. For interoperability, disable the checking of this field.
To disable Next payload field checking:
Step
1.
Enter system view.
2.
Disable Next payload field
checking.

Displaying and maintaining IKE

Task
Display IKE DPD information.
Display IKE peer information.
Display IKE SA information.
Display IKE proposal information.
Clear SAs established by IKE.

IKE configuration example

Network requirements
As shown in
A and Switch B to allow secure communication between Host A and Host B.
Switch A is configured with an IKE proposal using the sequence number of 10 and the authentication
algorithm of SHA1. Switch B has only the default IKE proposal.
The two switches use the pre-shared key authentication method.
Figure
69, an IPsec tunnel is established through IKE negotiation between gateways Switch
Command
system-view
ike next-payload check disabled
Command
display ike dpd [ dpd-name ] [ |
{ begin | exclude | include }
regular-expression ]
display ike peer [ peer-name ] [ |
{ begin | exclude | include }
regular-expression ]
display ike sa [ verbose
[ connection-id connection-id |
remote-address remote-address ] ]
[ | { begin | exclude | include }
regular-expression ]
display ike proposal [ | { begin |
exclude | include }
regular-expression ]
reset ike sa [ connection-id ]
204
Remark
N/A
Enabled by default.
Remarks
Available in any view.
Available in any view.
Available in any view.
Available in any view.
Available in user view.

Advertisement

Table of Contents
loading

Table of Contents