H3C S6550X-HI Series Command Reference Manual page 2315

Table of Contents

Advertisement

[Sysname] ike keepalive timeout 20
Related commands
ike keepalive interval
ike keychain
Use
ike keychain
IKE keychain.
Use
undo ike keychain
Syntax
ike keychain keychain-name [ vpn-instance vpn-instance-name ]
undo ike keychain keychain-name [ vpn-instance vpn-instance-name ]
Default
No IKE keychains exist.
Views
System view
Predefined user roles
network-admin
Parameters
keychain-name
vpn-instance vpn-instance-name
keychain belongs. The
case-sensitive string of 1 to 31 characters. To create an IKE keychain for the public network, do not
specify this option.
Usage guidelines
To use preshared key authentication, you must create and specify an IKE keychain for the IKE
profile.
Examples
# Create IKE keychain key1 and enter its view.
<Sysname> system-view
[Sysname] ike keychain key1
[Sysname-ike-keychain-key1]
Related commands
authentication-method
pre-shared-key
ike limit
Use
ike limit
Use
undo ike limit
Syntax
ike limit { max-negotiating-sa negotiation-limit | max-sa sa-limit }
to create an IKE keychain and enter its view, or enter the view of an existing
to delete an IKE keychain.
: Specifies an IKE keychain name, a case-insensitive string of 1 to 63 characters.
vpn-instance-name
to set the maximum number of half-open or established IKE SAs.
to restore the default.
: Specifies the MPLS L3VPN instance to which the IKE
argument represents the VPN instance name, a
21

Advertisement

Table of Contents
loading

Table of Contents