negotiation of security associations (SAs) and key distribution, all the attributes for which
are gathered in a domain of interpretation (DOI). The IPSec DOI is a document containing
definitions for all the security parameters and attributes required for SA and IKE
negotiations. See RFC 2407 and RFC 2408 for more information. For more information,
see “Configuring IPSec” on page 175.
Options proposal ipsec-proposal-name—Name of the IPSec proposal.
lifetime-seconds lifetime-in-seconds—Lifetime in seconds.
policy ipsec-policy-name—Name of the IPSec policy.
gateway remote-gateway-name—Name of the remote gateway.
Required Privilege
Level
routing—To view this statement in the configuration.
routing-control—To add this statement to the configuration.
Related
Documentation
• Configuring IPSec on page 175
195Copyright © 2017, Juniper Networks, Inc.
Chapter 9: IPSec-NM Configuration Statements and Operational Commands