73
2. Configure an IKEv2 IPv4
address pool.
ikev2 address-group
group-name start-ipv4-address
end-ipv4-address [ mask |
mask-length ]
By default, no IKEv2 IPv4 address
pool exists.
3. Configure an IKEv2 IPv6
address pool.
ikev2 ipv6-address-group
group-name
prefix
prefix/prefix-len
assign-len
assign-len
By default, no IKEv2 IPv6 address
pool exists.
Displaying and maintaining IKEv2
Execute display commands in any view and reset commands in user view.
Display the IKEv2 proposal configuration.
[ name |
]
Display the IKEv2 policy configuration.
display ikev2 policy
[ policy-name |
default
]
Display the IKEv2 profile configuration.
display ikev2 profile
[ profile-name ]
Display the IKEv2 SA information.
display ikev2 sa
[ {
local
|
remote
} { ipv4-address |
ipv6
ipv6-address } [
vpn-instance
vpn-instance-name ] ] [
verbose
[
tunnel
tunnel-id ] ]
Display IKEv2 statistics.
Delete IKEv2 SAs and the child SAs negotiated
through the IKEv2 SAs.
reset ikev2 sa
[ [ {
local
|
remote
} { ipv4-address |
ipv6
ipv6-address } [
vpn-instance
vpn-instance-name ] ] |
tunnel
tunnel-id ] [
fast
]
Clear IKEv2 statistics.
reset ikev2 statistics
Command reference
New command: aaa authorization
Use aaa authorization to enable IKEv2 AAA authorization.
Use undo aaa authorization to disable IKEv2 AAA authorization.
Syntax
aaa authorization domain domain-name username user-name
undo aaa authorization
Default
IKEv2 AAA authorization is disabled.
Views
IKEv2 profile view