Ste
p
Description Command Keys
46 Disable key re-approval before the IKE
connection is lost due to the timeout,
the number of transmitted packets or
bytes (optionally).
esr(config-ipsec-vpn)# ike rekey
disable
Default value: disabled.
47 Configure the start of IKE connection
keys re-approval before the expiration of
the lifetime (optionally).
esr(config-ipsec-vpn)# ike rekey
margin { seconds <SEC> |
packets <PACKETS> | kilobytes
<KB> }
<SEC> – time interval in
seconds remaining before the
connection release (set by the
lifetimeseconds command).
Takes values in the range of
[4..86400].
Default value: 540
<PACKETS> – number of
packets remaining before the
connection release (set by the
lifetimepackets command).
Takes values in the range of
[4..86400].
Default value: disabled.
<KB> – traffic volume in
kilobytes remaining before the
connection release (set by the
lifetimekilobytes command).
May take values [4..86400]
Default value: disabled.
48 Set the level of margin seconds, margin
packets, margin kilobytes values
random spread (optionally).
esr(config-ipsec-vpn)# ike rekey
randomization <VALUE>
<VALUE> – maximum ratio of
values spread, takes values of
[1..100].
Default value: 100
49 Describe VPN (optionally). esr(config-ipsec-vpn)# description
<DESCRIPTION>
<DESCRIPTION> – profile
description, set by the string of
up to 255 characters.
50 Enable IPsec VPN. esr(config-ipsec-vpn)# enable