JUNOSe 11.1.x Command Reference Guide N to Z
tunnel pfs group
tunnel pfs group { 1 | 2 | 5 }
Syntax
no tunnel pfs group
Command introduced before JUNOSe Release 7.1.0.
Release Information
Configures perfect forward secrecy for the IPSec tunnel by assigning a Diffie-Hellman
Description
prime modulus group. The no version removes PFS from this tunnel.
Options
Interface Configuration
Mode
1366
tunnel pfs group
1 Assigns a 768-bit Diffie-Hellman prime modulus group
2 Assigns a 1024-bit Diffie-Hellman prime modulus group
5 Assigns a 1536-bit Diffie-Hellman prime modulus group