R3721-F3210-F3171-HP High-End Firewalls VPN Command Reference-6PW101
34
IKE configuration commands
The following matrix shows the feature and firewall compatibility:
Feature F1000-A-EI/S-EI
F1000-E
F5000
Firewall module
FIPS No No No Yes
authentication-algorithm
Syntax
authentication-algorithm { md5 | sha }
undo authentication-algorithm
View
IKE proposal view
Default level
2: System level
Parameters
md5: Uses HMAC-MD5. This keyword is not available for the FIPS mode
sha: Uses HMAC-SHA1.
Description
Use authentication-algorithm to specify an authentication algorithm for an IKE proposal.
Use undo authentication-algorithm to restore the default.
By default, an IKE proposal uses the SHA1 authentication algorithm.
Related commands: ike proposal and display ike proposal.
Examples
# Set MD5 as the authentication algorithm for IKE proposal 10.
<Sysname> system-view
[Sysname] ike proposal 10
[Sysname-ike-proposal-10] authentication-algorithm md5
authentication-method
Syntax
authentication-method { pre-share | rsa-signature }
undo authentication-method
View
IKE proposal view