3Com Switch 8800 Family IPsec Module Configuration and Command reference Guide
450 CHAPTER 25: DVPN CONFIGURATION COMMANDS
Example
# Specify not to encrypt packets.
[SecBlade_VPN-dvpn-policy-abc] data algorithm-suite 0
data ipsec-sa duration Syntax
data ipsec-sa duration time-based time-interval
undo data ipsec-sa duration time-based
View
DVPN policy views
Parameter
time-interval: Time out time to renegotiate the IPsec SA used to encrypt DVPN
data. This argument ranges from 180 to 604,800 seconds.
Description
Use the data ipsec-sa duration time-based command to set the time out time
to renegotiate the IPsec SA used to encrypt DVPN data.
Use the undo data ipsec-sa duration time-based command to revert to the
default time out time to renegotiate the IPsec SA.
The default time out time to renegotiate the IPsec SA is 3600 seconds.
Example
# Set the time out time to renegotiate the IPsec SA to 86400 seconds.
[SecBlade_VPN-dvpn-policy-abc] data ipsec-sa duration time-based 86400
debugging dvpn Syntax
debugging dvpn { all | error | event { all | misc | register | session } |
hexadecimal | packet { all | control | data | ipsec } }
undo debugging dvpn { all | error | event { all | register | session | misc } |
hexadecimal | packet { all | control | data | ipsec } }
View
User view
Parameter
all: Enables all types of DVPN debugging.
error: Enables debugging for DVPN errors.
event: Enables debugging for DVPN events, such as register events, session
events, and misc events.
hexadecimal: Enables debugging for hexadecimal packets.