H3C Technologies H3C SecPath F1000-E User Manual
Page 141
129
2.
Click Add.
Figure 88 Adding an IKE peer
3.
Configure an IKE peer as described in
.
4.
Click Apply.
Table 8 Configuration items
Item
Description
Peer Name
Enter a name for the IKE peer.
IKE Negotiation Mode
Select the IKE negotiation mode in phase 1, which can be Main or Aggressive.
The aggressive mode is not available for the FIPS mode.
IMPORTANT:
•
If one end of an IPsec tunnel is configured to obtain an IP address
dynamically, the IKE negotiation must use the aggressive mode to establish
SAs with the correct username and password.
•
The specified negotiated mode is used when the local peer is the negotiation
initiator. When acting as the responder, the negotiation mode of the initiator
is used.
This manual is related to the following products:
- H3C SecPath F5000-A5 Firewall H3C SecPath F1000-A-EI H3C SecPath F1000-E-SI H3C SecPath F1000-S-AI H3C SecPath F5000-S Firewall H3C SecPath F5000-C Firewall H3C SecPath F100-C-SI H3C SecPath F1000-C-SI H3C SecPath F100-A-SI H3C SecBlade FW Cards H3C SecBlade FW Enhanced Cards H3C SecPath U200-A U200-M U200-S H3C SecPath U200-CA U200-CM U200-CS