489
Examples
# Create an IKE-based IPsec policy entry and enter the IPsec policy view. The policy name is
policy1
and the sequence number is 100.
<Sysname> system-view
[Sysname] ipsec policy policy1 100 isakmp
[Sysname-ipsec-policy-isakmp-policy1-100]
# Create a manual IPsec policy entry and enter the IPsec policy view. The policy name is
policy1
and the sequence number is 101.
<Sysname> system-view
[Sysname] ipsec policy policy1 101 manual
[Sysname-ipsec-policy-manual-policy1-101]
# Create a GDOI-based IPsec policy entry and enter the IPsec policy view. The policy name is
policygdoi
and the sequence number is 100.
<Sysname> system-view
[Sysname] ipsec policy policygdoi 100 gdoi
[Sysname-ipsec-policy-gdoi-policygdoi-100]
Related commands
display ipsec
{
ipv6-policy
|
policy
}
ipsec apply
ipsec { ipv6-policy | policy } isakmp template
Use
ipsec
{
ipv6-policy
|
policy
}
isakmp template
to create an IKE-based IPsec policy entry by
using an IPsec policy template.
Use
undo
ipsec
{
ipv6-policy
|
policy
} to delete the specified IPsec policy.
Syntax
ipsec
{
ipv6-policy
|
policy
}
policy-name
seq-number
isakmp template
template-name
undo
ipsec
{
ipv6-policy
|
policy
}
policy-name
[
seq-number
]
Default
No IPsec policies exist.
Views
System view
Predefined user roles
network-admin
Parameters
ipv6-policy
: Specifies an IPv6 IPsec policy.
policy
: Specifies an IPv4 IPsec policy.
policy-name
: Specifies a name for the IPsec policy, a case-insensitive string of 1 to 63 characters.
seq-number
: Specifies a sequence number for the IPsec policy, in the range of 1 to 65535. A smaller
number indicates a higher priority.
isakmp template template-name
: Specifies an IPsec policy template by its name, a case-insensitive
string of 1 to 63 characters.
Summary of Contents for FlexNetwork MSR Series
Page 1005: ...987 ...