最佳答案
创建IKE的时候就可以选择
[F1070-IRF]ikev2 ?
address-group Specify the IPv4 address group
COOKIE-challenge Enable IKEv2 COOKIE challenge only when the number of
half-open SAs exceeds the limit
dpd Configure the Dead Peer Detection function
ipv6-address-group Specify the IPv6 address group
keychain Configure an IKEv2 keychain
nat-keepalive Specify the NAT keepalive interval
policy Configure an IKEv2 policy
profile Configure an IKEv2 profile
proposal Configure an IKEv2 proposal
[F1070-IRF]ike ?
address-group Configure the IPv4 address pool for assigning addresses
to peers
compatible-gm-main Ike gm signature compatible mode
compatible-sm4 Backward compatibility for the sm4-cbc algorithm
dpd Specify Dead Peer Detection (DPD) parameters
identity Specify the identity of the local end
invalid-spi-recovery Re-establish an IKE SA upon an invalid-SPI event
ipv6-address-group Configure the IPv6 address pool for assigning addresses
to peers
keepalive Specify a keepalive timer
keychain Configure an IKE keychain
limit Limit the number of IKE security associations (SAs)
established and in negotiation
logging Ike logging function
nat-keepalive Specify the NAT keepalive interval
profile Configure an IKE profile
proposal Configure an IKE proposal
signature-identity Specify the identity of the local end for signature
authentication
(0)
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论