R2511-HP MSR Router Series Security Command Reference(V5)
299
Views
IKEv2 profile view
Default command level
2: System level
Parameters
seconds: Specifies the NAT keepalive interval in seconds, in the range of 5 to 3600.
Usage guidelines
When a NAT gateway exists between two IKEv2 peers, each end using a private address periodically
sends NAT keepalive packets to the other end to prevent its NAT entry from being aged out.
Examples
# Create an IKEv2 profile named profile1.
<Sysname> system-view
[Sysname] ikev2 profile profile1
# Set the IKEv2 NAT keepalive interval to 1200 seconds.
[Sysname-ikev2-profile-profile1] nat keepalive 1200
Related commands
display ikev2 profile
peer (IKEv2 keyring view)
Use peer to create an IKEv2 peer and enter IKEv2 peer.
Use undo peer to delete an IKEv2 peer.
Syntax
peer peer-name
undo peer peer-name
Default
No IKEv2 peer exists.
Views
IKEv2 keyring view
Default command level
2: System level
Parameters
peer-name: Specifies the IKEv2 peer name, a case-insensitive string of 1 to 32 characters.
Usage guidelines
An IKEv2 peer contains one or two pre-shared keys and the criteria for matching the peer, which includes
the peer's host name, host IP address, IP address range, or ID. The IKEv2 negotiation initiator uses the
peer's host name, host IP address, or address range to search for its peer. The responder uses the peer's
host IP address, address range, or ID to do so.
[Sysname-ikev2-keyring-keyr1-keyr1] peer peer1










