Configuration manual
Appendix G Command Interpreter 291
Nortel Business Secure Router 252 Configuration — Advanced
keepalive active <yes |
no>
Enables or disables client failover tuning
(keep-alive).
interval
<hh:mm:ss>
Sets the keep-alive interval, valid interval
00:00:10 ~ 23:59:59.
maxRetrans
Sets the keep-alive max retransmissions,
valid range 0~255
pfs <enable |
disable>
Enables or disables Perfect Forward
Secrecy.
idleTo <hh:mm:ss>
Sets the Idle Timeout, the valid value is:
00:00:00~23:59:59, 00:00:00 means no
idle timeout.
aicp <on | off>
Enable or disables Accept Initial Contact
Payload.
rekeyTo <hh:mm:ss>
Sets the lifetime of a single key used for
data encryption.
rekeyDc
Sets how much data you expect to
transmit via the tunnel with a single key.
A setting of 0 kb disables the Rekey Data
Count, rekey data count must be more
than 5.
domain
Sets the domain name for client
termination.
dns <primary |
secondary> <IP>
Sets primary or secondary DNS server IP
addresses to be assigned to remote
users.
wins <primary |
secondary> <IP>
Sets primary or secondary WINS server
IP addresses to be assigned to remote
users.
banner <on | off>
[banner text]
Sets whether or not the banner appears
when a remote user logs on to the
gateway. Also sets the banner text if
specified (up to 256 characters).
password clientStorage
<on | off>
Sets whether or not the Contivity VPN
clients can save their logon passwords
instead of always having to manually
enter them.
manage <on |
off>
Enables or disables the password
management facilities, including
maximum password age, minimum
password length, and allow
alpha-numeric passwords only.
Table 68 IPSec commands
Command Description