R3721-F3210-F3171-HP High-End Firewalls VPN Command Reference-6PW101
54
Default level
2: System level
Parameters
None
Description
Use nat traversal to enable the NAT traversal function of IKE/IPsec.
Use undo nat traversal to disable the NAT traversal function of IKE/IPsec.
By default, the NAT traversal function is disabled.
Examples
# Enable the NAT traversal function for IKE peer peer1.
<Sysname> system-view
[Sysname] ike peer peer1
[Sysname-ike-peer-peer1] nat traversal
peer
Syntax
peer { multi-subnet | single-subnet }
undo peer
View
IKE peer view
Default level
2: System level
Parameters
multi-subnet: Sets the subnet type to multiple.
single-subnet: Sets the subnet type to single.
Description
Use peer to set the subnet type of the peer security gateway for IKE negotiation.
Use undo peer to restore the default.
By default, the subnet is a single one.
Use this command to enable interoperability with a NetScreen device.
Examples
# Set the subnet type of the peer security gateway to multiple.
<Sysname> system-view
[Sysname] ike peer xhy
[Sysname-ike-peer-xhy] peer multi-subnet