R2511-HP MSR Router Series Security Command Reference(V5)
198
Default command level
2: System level
Parameters
transport: Uses transport mode.
tunnel: Uses tunnel mode.
Usage guidelines
IPsec for IPv6 routing protocols supports only the transport mode.
When IPsec uses IKEv1, this command can be used only in IPsec transform set view, and its related
commands include only ipsec transform-set.
When IPsec uses IKEv2, this command can be used only in IPsec policy view, IPsec policy template view,
and IPsec profile view, and its related commands include ipsec policy (system view), ipsec
policy-template, and ipsec profile (system view).
Examples
# When IPsec uses IKEv1, configure IPsec transform set tran1 to use the transport encapsulation mode.
<Sysname> system-view
[Sysname] ipsec transform-set tran1
[Sysname-ipsec-transform-set-tran1] encapsulation-mode transport
# When IPsec uses IKEv2, configure IPsec policy policy1 with sequence number 100 to use the transport
encapsulation mode.
<Sysname> system-view
[Sysname] ipsec policy policy1 100 isakmp
[Sysname-ipsec-policy-isakmp-policy1-100] encapsulation-mode transport
Related commands
ipsec transform-set
esn enable
Use esn enable to enable the extended sequence number (ESN) function.
Use undo esn enable to disable the function.
Syntax
esn enable
undo esn enable
Default
ESN is disabled.
Views
IPsec transform set view
Default command level
2: System level










