H3C S6550X-HI Series Command Reference Manual page 2343

Table of Contents

Advertisement

Table 2 Command output
Field
IKEv2 profile
Priority
Match criteria
Inside-vrf
Local identity
Local authentication method
Remote authentication methods
Keychain
Sign certificate domain
Verify certificate domain
SA duration
DPD
Config-exchange
NAT keepalive
AAA authorization
Related commands
ikev2 profile
display ikev2 proposal
Use
display ikev2 proposal
Syntax
display ikev2 proposal [ name | default ]
Views
Any view
Predefined user roles
network-admin
Description
Name of the IKEv2 profile.
Priority of the IKEv2 profile.
Criteria for looking up the IKEv2 profile.
Inside VPN instance.
ID of the local end.
Method that the local end uses for authentication.
Methods that the remote end uses for authentication.
IKEv2 keychain that the IKEv2 profile uses.
PKI domain used for signature generation.
PKI domain used for verifying the remote end's certificate.
Lifetime of the IKEv2 SA.
DPD settings:
Detection interval in seconds.
Retry interval in seconds.
Detection mode, on demand or periodically.
If DPD is disabled, this field displays Disabled.
Configuration exchange settings:
Request—The local end sends request messages
carrying the configuration request payload during the
IKE_AUTH exchange.
Set accept—The local end accepts the configuration set
payload carried in Info messages.
Set send—The local end sends Info messages carrying
the configuration set payload.
NAT keepalive interval in seconds.
AAA authorization settings:
ISP domain name.
Username.
to display the IKEv2 proposal configuration.
9

Advertisement

Table of Contents
loading

Table of Contents