pfs group
Syntax
Release Information
Description
Options
Mode
Copyright © 2010, Juniper Networks, Inc.
pfs group { 1 | 2 | 5 }
no pfs group
Command introduced before JunosE Release 7.1.0.
IPSec Tunnel Profile mode added in JunosE Release 7.3.0.
Configures perfect forward secrecy for connections created with this IPSec transport or
tunnel profile by assigning a Diffie-Hellman prime modulus group. The no version removes
PFS from the profile.
1—768-bit Diffie-Hellman prime modulus group
2—1024-bit Diffie-Hellman prime modulus group
5—1536-bit Diffie-Hellman prime modulus group
IPSec Transport Profile Configuration, IPSec Tunnel Profile Configuration
Chapter 4: P Commands
187
Need help?
Do you have a question about the JUNOSE SOFTWARE FOR E SERIES 11.3.X - COMMAND REFERENCE N TO Z 2010-10-19 and is the answer not in the manual?