R3303-HP 6600/HSR6600 Routers Security Command Reference

Table Of Contents
343
ike peer (system view)
Use ike peer to create an IKE peer and enter IKE peer view.
Use undo ike peer to delete an IKE peer.
Syntax
ike peer peer-name
undo ike peer peer-name
Views
System view
Default command level
2: System level
Parameters
peer-name: Specifies the IKE peer name, a string of 1 to 32 characters.
Examples
# Create an IKE peer named peer1 and enter IKE peer view.
<Sysname> system-view
[Sysname] ike peer peer1
[Sysname-ike-peer-peer1]
ike proposal
Use ike proposal to create an IKE proposal and enter IKE proposal view.
Use undo ike proposal to delete an IKE proposal.
Syntax
ike proposal proposal-number
undo ike proposal proposal-number
Views
System view
Default command level
2: System level
Parameters
proposal-number: Specifies the IKE proposal number in the range of 1 to 65535. The lower the number,
the higher the priority of the IKE proposal. During IKE negotiation, a high priority IKE proposal is
matched before a low priority IKE proposal.
Usage guidelines
The system provides a default IKE proposal, which has the lowest priority. The following table shows the
default settings for the default IKE proposal in non-FIPS mode and FIPS mode:
Setting Non-FIPS mode FIPS mode
Encryption algorithm DES-CBC AES_CBC_128