F3726, F3211, F3174, R5135, R3816-HP Firewalls and UTM Devices VPN Command Reference-6PW100

41
Field Descri
p
tion
life duration(sec) Lifetime of the ISAKMP SA in seconds.
remaining key duration(sec) Remaining lifetime of the ISAKMP SA in seconds.
exchange-mode IKE negotiation mode in phase 1.
diffie-hellman group DH group used for key negotiation in IKE phase 1.
nat traversal Whether NAT traversal is enabled.
Related commands
ike proposal
ike peer
dpd
Use dpd to apply a DPD detector to an IKE peer.
Use undo dpd to remove the application.
Syntax
dpd dpd-name
undo dpd
Default
No DPD detector is applied to an IKE peer.
Views
IKE peer view
Default command level
2: System level
Parameters
dpd-name: DPD detector name, a string of 1 to 32 characters.
Examples
# Apply dpd1 to IKE peer peer1.
<Sysname> system-view
[Sysname] ike peer peer1
[Sysname-ike-peer-peer1] dpd dpd1
encryption-algorithm
Use encryption-algorithm to specify an encryption algorithm for an IKE proposal.
Use undo encryption-algorithm to restore the default.
Syntax
encryption-algorithm { 3des-cbc | aes-cbc [ key-length ] | des-cbc }
undo encryption-algorithm