Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Navigation

internal

Syntax

internal {security-association {manual encryption {algorithm 3des-cbc;key ascii-text key;}}
}

Hierarchy Level

[edit security ipsec internal-security-association]

Release Information

Statement introduced in Junos OS Release 12.1X45-D10.

Description

Enable secure login by configuring the internal IP security (IPsec) security association (SA). When the internal IPsec is configured, IPsec-based rlogin and remote command (rcmd) are enforced, so an attacker cannot gain unauthorized information.

Options

security-association

Specify an IPsec SA.

manual encryption

Specify a manual SA.

algorithm

Select the encryption algorithm for the internal Routing-Engine-to-Routing-Engine IPsec SA configuration.

Note: Only the 3des-cbc encryption algorithm is supported.

key

Specify the encryption key. You must ensure that the manual encryption key is in ASCII text and 24 characters long; otherwise, the configuration will result in a commit failure.

Required Privilege Level

interface—To view this statement in the configuration.

interface-control—To add this statement to the configuration.

Published: 2013-11-11

Supported Platforms

Published: 2013-11-11