ike
Syntax ike {
proposal ike-proposal-name {
authentication-method {
dsa-signatures;
pre-shared-keys;
rsa-signatures;
}
authentication-algorithm {
md5;
sha-256;
sha-384;
sha1;
}
dh-group {
group1;
group14;
group2;
group5;
}
encryption-algorithm {
3des-cbc;
aes-128-cbc;
aes-128-gcm;
aes-192-cbc;
aes-256-cbc;
aes-256-gcm;
des-cbc;
}
lifetime-seconds lifetime-in-seconds;
}
policy ike-policy-name {
mode {
aggressive;
main;
}
proposals proposal-name;
pre-shared-key {
ascii-text;
hexadecimal;
}
}
gateway gateway-name {
ike-policy ike-policy-name;
address address-or-hostname-of-peer;
dead-peer-detection {
always-send;
interval interval-in-seconds;
threshold maximum-number-of-DPD-retransmissions;
}
external-interface external-interface;
local-address local-ip-address;
version {
Copyright © 2017, Juniper Networks, Inc.192
JDM User Guide for NFX250 Network Services Platform