v1-only;
v2-only;
}
}
traceoptions {
file {
filename;
size file-size;
}
flag all;
}
}
Hierarchy Level [ipsec-nm configuration security]
Release Information Statement introduced in Junos OS Release 15.1X53-D47 for the NFX250 Network Services
Platform.
Description IPSec-NM supports the automated generation and negotiation of keys and security
associations (SAs) using the Internet Key Exchange (IKE) protocol. This automation is
termed as AutoKey IKE. Juniper Networks supports AutoKey IKE with pre-shared keys
and certificates. For more information, see “Configuring AutoKey Internet Key Exchange”
on page 172.
Options proposal ike-proposal-name—Name of the IKE proposal.
lifetime-seconds lifetime-in-seconds—Lifetime in seconds.
proposals ipsec-policy-name—Name of the proposals.
gateway remote-gateway-name—Name of the remote gateway.
ike-policy ike-policy-name—Name of the IKE policy.
traceoptions—Option to trace information for the IPSec key management.
Required Privilege
Level
routing—To view this statement in the configuration.
routing-control—To add this statement to the configuration.
Related
Documentation
• Configuring AutoKey Internet Key Exchange on page 172
193Copyright © 2017, Juniper Networks, Inc.
Chapter 9: IPSec-NM Configuration Statements and Operational Commands