Ike Ipsec Policies Set Pfs - Efficient Networks Router family Command Line Interface Manual

Table of Contents

Advertisement

Chapter 12: IKE/IPsec Commands

ike ipsec policies set pfs

Defines the pfs filtering parameter value for the policy. The pfs parameter specifies
the Perfect Forward Secrecy negotiation used for the connection.
If you specify 1 or 2, Perfect Forward Secrecy is performed using the specified Diffie-
Hellman group (1 or 2). If you specify none, then Perfect Forward Secrecy is not
required for this connection and no Diffie-Hellman group is used to encrypt the keys
during rekey. To read more about PFS, see
Mgmt Class
Security (R/W)
Input Format
ike ipsec policies set pfs <1 | 2 | none > <policyname>
Parameters
1
2
none
<policyname>
a
ASCII string
b
To see the policy names, use the
Example
-> ike ipsec policies set pfs 2 mypolicy
Response
Command prompt.
Page 12-16
Use Diffie-Hellman group 1 for the Perfect Forward Secrecy
negotiation.
Use Diffie-Hellman group 2 for the Perfect Forward Secrecy
negotiation.
Perfect Forward Secrecy negotiation is not required for this
connection.
a
Name of the IPsec policy to which the pfs parameter value is
b
added.
ike ipsec policies list
Efficient Networks
Command Line Interface Guide
"IKE Management" on page 5-52.
command.
®
Router family
®
Efficient Networks

Advertisement

Table of Contents
loading

Table of Contents