HP 6125XLG R2306-HP 6125XLG Blade Switch Security Command Reference - Page 299
ike keychain
View all HP 6125XLG manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 299 highlights
Use undo ike keepalive timeout to restore the default. Syntax ike keepalive timeout seconds undo ike keepalive timeout Default The negotiated aging time for the IKE SA applies. Views System view Predefined user roles network-admin Parameters seconds: Specifies the number of seconds between IKE keepalives. The value is in the range of 20 to 28800. Usage guidelines If the local receives no keepalive packets from the peer during the timeout time, the IKE SA is deleted along with the IPsec SAs it negotiated. The keepalive timeout time configured at the local must be longer than the keepalive interval configured at the peer. Since it seldom occurs that more than three consecutive packets are lost on a network, you can set the keepalive timeout three times as long as the keepalive interval. Examples # Set the keepalive timeout time to 20 seconds. system-view [Sysname] ike keepalive timeout 20 Related commands ike keepalive interval ike keychain Use ike keychain to create an IKE keychain and enter IKE keychain view. Use undo ike keychain to delete an IKE keychain. Syntax ike keychain keychain-name [ vpn-instance vpn-name ] undo ike keychain keychain-name [ vpn-instance vpn-name ] Default No IKE keychain is configured. Views System view Predefined user roles network-admin 290