Ipsec Anti-Replay Window; Ipsec Decrypt Check - HPE FlexNetwork HSR6800 Security Command Reference

Hide thumbs Also See for FlexNetwork HSR6800:
Table of Contents

Advertisement

undo ipsec anti-replay check
Default
IPsec anti-replay checking is enabled.
Views
System view
Default command level
2: System level
Examples
# Enable IPsec anti-replay checking.
<Sysname> system-view
[Sysname] ipsec anti-replay check

ipsec anti-replay window

Use ipsec anti-replay window to set the size of the anti-replay window.
Use undo ipsec anti-replay window to restore the default.
Syntax
ipsec anti-replay window width
undo ipsec anti-replay window
Default
The size of the anti-replay window is 32.
Views
System view
Default command level
2: System level
Parameters
width: Specifies the size of the anti-replay window. It can be 32, 64, 128, 256, 512, or 1024.
Usage guidelines
Your configuration affects only IPsec SAs negotiated later.
Examples
# Set the size of the anti-replay window to 64.
<Sysname> system-view
[Sysname] ipsec anti-replay window 64

ipsec decrypt check

Use ipsec decrypt check to enable ACL checking of de-encapsulated IPsec packets.
Use undo ipsec decrypt check to disable ACL checking of de-encapsulated IPsec packets.
Syntax
ipsec decrypt check
undo ipsec decrypt check
275

Advertisement

Table of Contents
loading

Table of Contents