124
Predefined user roles
network-admin
Parameters
profile-name: Specifies an IKEv2 profile by its name, a case-insensitive string of 1 to 63 characters.
Usage guidelines
The IKEv2 profile specified for an IPsec policy or IPsec policy template defines the parameters used
for IKEv2 negotiation.
You can specify only one IKEv2 profile for an IPsec policy or IPsec policy template. On the initiator,
an IKEv2 profile is required. On the responder, an IKEv2 profile is optional. If you do not specify an
IKEv2 profile, the responder can use any IKEv2 profile for negotiation.
Examples
# Specify the IKEv2 profile profile1 for the IPsec policy policy1.
<Sysname> system-view
[Sysname] ipsec policy policy1 10 isakmp
[Sysname-ipsec-policy-isakmp-policy1-10] ikev2-profile profile1
Related commands
display ipsec ipv6-policy
display ipsec policy
ikev2 profile
New command: tfc enable
Use tfc enable to enable the Traffic Flow Confidentiality (TFC) padding feature.
Use undo tfc enable to disable the TFC padding feature.
Syntax
tfc enable
undo tfc enable
Default
TFC padding is disabled.
Views
IPsec policy view, IPsec policy template view
Predefined user roles
network-admin
Usage guidelines
The TFC padding feature can hide the length of the original packet, and might affect the packet
encapsulation and de-encapsulation performance. This feature takes effect on UDP packets