SROS Command Line Interface Reference Guide
IKE Policy Command Set
5991-2114
© Copyright 2007 Hewlett-Packard Development Company, L.P.
1266
initiate [aggressive | main]
Use the
initiate
command to allow the IKE policy to initiate negotiation (in main mode or aggressive
mode) with peers. Use the
no
form of this command to allow the policy to respond only.
Syntax Description
aggressive
Specifies to initiate using aggressive mode. Aggressive mode can be used when
one end of the VPN tunnel has a dynamically assigned address. The side with
the dynamic address must be the initiator of the traffic and tunnel. The side with
the static address must be the responder.
main
Specifies to initiate using main mode. Main mode requires that each end of the
VPN tunnel has a static WAN IP address. Main mode is more secure than
aggressive mode because more of the main mode negotiations are encrypted.
Default Values
By default, the
main
initiation is enabled.
Functional Notes
By using the
initiate
and
respond
commands, you can configure the IKE policy to initiate and respond, initiate
only, or respond only. It is an error if you have both
initiate
and
respond
disabled.
Usage Examples
The following example enables the SROS device to initiate IKE negotiation in main mode:
ProCurve(config-ike)#
initiate main
Содержание ProCurve Secure 7102dl
Страница 2: ......
Страница 3: ...SROS Command Line Interface Reference Guide Software Version J 08 03 September 2007 61195880L1 35H ...
Страница 1454: ......