311
Field Description
remote id
Identifier of the remote security gateway.
local ip
IP address of the local gateway.
remote ip
IP address of the remote gateway.
connection id
Identifier of the IKE SA and IPsec SA.
authentication-method Authentication method used by the IKE proposal.
authentication-algorithm Authentication algorithm used by the IKE proposal.
encryption-algorithm
Encryption algorithm used by the IKE proposal.
life duration(sec)
Lifetime of the ISAKMP SA in seconds.
remaining key duration(sec)
Remaining lifetime of the ISAKMP SA in seconds.
exchange-mode
IKE negotiation mode in phase 1.
diffie-hellman group
DH group used for key negotiation in IKE phase 1.
nat traversal
Whether NAT traversal is enabled.
Related commands
•
ike
proposal
•
ike
peer
dpd
Use
dpd
to apply a DPD detector to an IKE peer.
Use
undo dpd
to remove the application.
Syntax
dpd
dpd-name
undo
dpd
Default
No DPD detector is applied to an IKE peer.
Views
IKE peer view
Default command level
2: System level
Parameters
dpd-name
: Specifies the DPD detector name, a string of 1 to 32 characters.
Examples
# Apply
dpd1
to IKE peer peer1.
<Sysname> system-view
[Sysname] ike peer peer1
[Sysname-ike-peer-peer1] dpd dpd1