Navigation
passive-mode-tunneling
Syntax
passive-mode-tunneling;
Hierarchy Level
[edit services service-set service-set-name ipsec-vpn-options]
Release Information
Statement introduced in Junos OS Release 10.0.
Description
Allows tunneling of malformed packets. When this statement is enabled, traffic bypasses the usual active IP checks. The IPsec tunnel is not treated as a next hop and TTL is not decremented. If the packet size exceeds the tunnel MTU value, an ICMP error is not generated.
Required Privilege Level
admin—To view this statement in the configuration.
admin-control—To add this statement to the configuration.