Related command:
Example
exchange-mode
Syntax
View
Parameter
Description
Related command:
Example
id-type
Syntax
View
Parameter
ike proposal and display ike proposal.
# Use 56-bit DES in CBC mode as the encryption algorithm for IKE proposal 10.
<Sysname> system-view
[Sysname] ike proposal 10
[Sysname-ike-proposal-10] encryption-algorithm des-cbc
exchange-mode { aggressive | main }
undo exchange-mode
IKE Peer view
aggressive: Aggressive mode
main: Main mode.
Use the
exchange-mode
Use the
undo exchange-mode
By default, main mode is used.
Note that if the user at one end of an IPSec tunnel obtains IP address automatically
(for example, a dial-up user), IKE negotiation mode must be set to aggressive. In
this case, an SA can be created as long as the username and password are correct.
id-type.
# Specify that IKE negotiation works in main mode.
<Sysname> system-view
[Sysname] ike peer peer1
[Sysname-ike-peer-peer1] exchange-mode main
id-type { ip | name }
undo id-type
IKE Peer view
ip: Uses an IP address as the ID in IKE negotiation.
name: Uses a name as the ID in IKE negotiation.
command to select an IKE negotiation mode.
command to restore the default.
2161