User`s guide

207
ConfigurationNetwork > Virtual Private Networking (VPN) > IPsec > IKE
> IKE Responder
This page displays the various parameters for IKE 0 when used in Responder mode.
Enable IKE Responder
Allows the router to respond to incoming IKE requests.
Accept IKE Requests with
Defines the settings that the router will accept during the negotiation
Encryption
The acceptable encryption algorithms.
Authentication
The acceptable authentication algorithms.
MODP Group between x and y
The acceptable range for MODP group.
Renegotiate after h hrs m mins s secs
Determines how long the initial IKE Security Association will stay in force. When it expires
any attempt to send packets to the remote system will result in IKE attempting
to establish a new SA.
Related CLI Commands
Entity
Instance
Parameter
Values
Equivalent Web Parameter
ike 0 noresp on, off Enable IKE Responder
ike 0 rencalgs
des, 3des, aes
Multiple algorithms
can specified in a
comma separated
list
Encryption
ike 0 keybits 0, 128, 192, 256
Encryption (Minimum AES Key
length)
ike 0 rauthalgs
md5, sha1
Multiple algorithms
can specified in a
comma separated
list
Authentication
ike 0 rdhmingroup 1, 2, 5 MODP Group between x and y
ike 0 rdhmaxgroup 1, 2, 5 MODP Group between x and y
ike 0 ltime 1 - 28800
Renegotiate after h hrs m mins s
secs
This CLI value is entered in
seconds only.