Juniper IP SERVICES - CONFIGURATION GUIDE V 11.1.X Configuration Manual page 178

Ip services configuration guide
Table of Contents

Advertisement

JUNOSe 11.1.x IP Services Configuration Guide
tunnel mtu
tunnel peer-identity
tunnel pfs group
tunnel session-key-inbound
152
Configuration Tasks
Use to set the MTU size for the tunnel.
Example
host1(config-if)#tunnel mtu 2240
Use the no version to restore the default MTU (1440).
See tunnel mtu.
Use to configure the peer identity (selector) that ISAKMP uses. Specify the identity
using one of the following keywords:
address Specifies an IP address as the peer identity
subnet Specifies a subnet as the peer identity
range Specifies a range of IP addresses as the peer identity
Example 1
host1(config-if)#tunnel peer-identity range 10.10.1.1 10.10.2.2
Example 2
host1(config-if)#tunnel peer-identity subnet 130.10.1.1 255.255.255.0
Use the no version to remove the peer identity.
See tunnel peer-identity.
Use to configure perfect forward secrecy (PFS) on this tunnel.
Assign a Diffie-Hellman prime modulus group using one of the following
keywords:
1 768-bit group
2 1024-bit group
5 1536-bit group
Example
host1(config-if)#tunnel pfs group 5
Use the no version to remove PFS from this tunnel.
See tunnel pfs group.

Advertisement

Table of Contents
loading

This manual is also suitable for:

Junose 11.1.x ip servicesJunose v 11.1

Table of Contents