IkeConfig

This configuration captures the IKE and phase one negotiation parameters. This configuration can be set for peering properly with remote peers.


Properties

array of DhGroupType
dhGroups Required

The list of Diffie-Helman groups to be used is PFS is enabled. Default is GROUP14.

Possible values are: GROUP2GROUP5GROUP14GROUP15GROUP16GROUP19GROUP20GROUP21


digestAlgorithms Optional

The list of Digest algorithms for IKE. This is used during IKE negotiation. Default is SHA2_256.

Possible values are: SHA1SHA2_256SHA2_384SHA2_512


encryptionAlgorithms Required

The list of Encryption algorithms for IKE. This is used during IKE negotiation. Default is AES_128.

Possible values are: AES_128AES_256AES_GCM_128AES_GCM_192AES_GCM_256


ikeVersion Required

IKE Protocol Version to use. The default is IKE_V2.

Possible values are: IKE_V1IKE_V2IKE_FLEX


integer
saLifeTime Optional

The Security Association life time in seconds. Default is 86400 seconds (1 day).

JSON Example

{
    "dhGroups": "enum",
    "encryptionAlgorithms": "enum",
    "ikeVersion": "enum"
}
Availability
Added in 33.0
Property Of

EdgeIpSecVpnTunnelConnectionProperties
Feedback

Was this page helpful?