H3C S6550X-HI Series Command Reference Manual page 2327

Table of Contents

Advertisement

: Specifies the preshared key. The key is case sensitive. Its plaintext form is a string of 1 to
string
128 characters and its encrypted form is a string of 1 to 201 characters.
Usage guidelines
The address option or the hostname option specifies the peer with which the device can use the
preshared key to perform IKE negotiation.
If you specify the peer by using the
negotiation and it must use the aggressive mode in IKE phase 1. The peer device ID must be the
peer FQDN that matches the hostname.
Two peers must be configured with the same preshared key to pass preshared key authentication.
This command does not support configuring a preshared key in interactive mode.
Examples
# Create IKE keychain key1 and enter IKE keychain view.
<Sysname> system-view
[Sysname] ike keychain key1
# Set the preshared key to be used for IKE negotiation with peer 1.1.1.2 to 123456TESTplat&!.
[Sysname-ike-keychain-key1] pre-shared-key address 1.1.1.2 255.255.255.255 key simple
123456TESTplat&!
Related commands
authentication-method
keychain
priority (IKE keychain view)
Use
priority
Use
undo priority
Syntax
priority priority
undo priority
Default
The priority of an IKE keychain is 100.
Views
IKE keychain view
Predefined user roles
network-admin
Parameters
priority priority
number, the higher the priority.
Usage guidelines
To determine the priority of an IKE keychain, the device examines the existence of the
local address
local address
have the
match local address
hostname
to specify a priority for an IKE keychain.
to restore the default.
: Specifies a priority number in the range of 1 to 65535. The lower the priority
command before examining the priority number. An IKE keychain with the
command configured has a higher priority than an IKE keychain that does not
command configured.
option, the device can act as only a responder in IKE
33
match
match

Advertisement

Table of Contents
loading

Table of Contents