Mode – Brocade Mobility RFS Controller CLI Reference Guide (Supporting software release 5.5.0.0 and later) User Manual
Page 612
Brocade Mobility RFS Controller CLI Reference Guide
599
53-1003098-01
7
Parameters
lifetime <600-86400>
Example
rfs7000-37FABE(config-profile-default-rfs7000-ikev1-policy-test-ikev1policy)#
lifetime 655
rfs7000-37FABE(config-profile-default-rfs7000-ikev1-policy-testpolicy)#show
context
crypto ikev1 policy testpolicy
dpd-keepalive 11
dpd-retries 10
lifetime 655
isakmp-proposal default encryption aes-256 group 2 hash sha
isakmp-proposal testpraposal encryption aes group 2 hash sha
rfs7000-37FABE(config-profile-default-rfs7000-ikev1-policy-testpolicy)#
mode
crypto-ikev1/ikev2-policy commands
Configures the IPSec mode of operation for the IKEv1 policy
Supported in the following platforms:
•
Access Points — Brocade Mobility 650 Access Point, Brocade Mobility 6511 Access Point,
Brocade Mobility 1220 Access Point, Brocade Mobility 71XX Access Point, Brocade
Mobility 1240 Access Point
•
Wireless Controllers — Brocade Mobility RFS4000, Brocade Mobility RFS6000, Brocade
Mobility RFS7000
•
Service Platforms — Brocade Mobility RFS9510
Syntax:
mode [aggresive|main]
Parameters
mode [aggresive|main]
Example
rfs7000-37FABE(config-profile-default-rfs7000-ikev1-policy-testpolicy)#mode
aggressive
rfs7000-37FABE(config-profile-default-rfs7000-ikev1-policy-testpolicy)#show
context
crypto ikev1 policy testpolicy
Specifies how many seconds an IKE SA lasts before it expires. Set a time stamp from
600 - 86400 seconds.
•
<600-86400> – Specify a value from 600 -8 6400 seconds.
mode [aggresive|main]
Sets the mode of the tunnels
•
aggressive – Initiates the aggressive mode
•
main – Initiates the main mode
If configuring the IKEv1 IPSec policy, define the IKE mode as either main or aggressive. In the aggressive
mode, 3 messages are exchanged between the IPSec peers to setup the SA. On the other hand, in the
main mode, 6 messages are exchanged. The default setting is main.