ESR-Series. User manual
175
Step
Description
Command
Keys
31
Specify the lifetime of IPsec tunnel
(optionally).
esr(config-ipsec- policy)# lifetime
{ seconds <SEC> |
packets <PACKETS> | kilobytes
<KB> }
<SEC> – IPsec tunnel lifetime
after which the re-approval is
carried out. Takes values in the
range of [1140..86400]
seconds.
<PACKETS> – number of
packets after transmitting of
which the IPsec tunnel re-
approval is carried out. Takes
values in the range of
[4..86400].
<KB> – traffic amount after
transmitting of which the IPsec
tunnel re-approval is carried
out. Takes values in the range
of [4..86400] seconds.
Default value: 28800 seconds
32
Create IPsec VPN policy and switch to
its configuration mode.
esr(config)# security ipsec vpn
<NAME>
<NAME> – VPN name, set by
the string of up to 31
characters.
33
Define the matching mode of data
required for VPN enabling.
esr(config-ipsec-vpn)# mode
<MODE>
<MODE> – VPN operation
mode.
34
Bind IPsec policy to IPsec VPN.
esr(config-ipsec-vpn)# ike ipsec-
policy <NAME>
<NAME> – IPsec policy name,
set by the string of up to 31
characters.
35
Set the DSCP value for the use in IP
headers of IKE outgoing packets
(optionally).
esr(config-ipsec-vpn)# ike dscp
<DSCP>
<DSCP> – DSCP code value,
takes values in the range of
[0..63].
Default value: 63
Содержание ESR Series
Страница 218: ...ESR Series User manual 218 ...
Страница 234: ...ESR Series User manual 234 In addition to RIP protocol configuration open UDP port 520 in the firewall ...
Страница 306: ...ESR Series User manual 306 Parameter targeted LDP Hold timer 45 seconds Keepalive holdtime 180 seconds ...
Страница 452: ...ESR Series User manual 452 Step Description Command Keys 4 Enable Tracking object esr config tracking enable ...
Страница 514: ...ESR Series User manual 514 esr show ntp peers ...