inline-fpga-crypto
Syntax
inline-fpga-crypto (disabled | enabled);
Hierarchy Level
[edit security forwarding-process application-services (Security Forwarding Process)]
Description
Enable or disable Inline FPGA Decryption (IFD) for cryptographic operation.
By default, the inline-fpga-crypto is disabled. To use the feature, enable the option.
Ensure you enable PMI processing when using inline-fpga-crypto
option to avoid the risk of traffic loss.
PowerMode IPsec (PMI) uses AES-NI for encryption and FPGA for decryption of cryptographic operation to enhance IPSec VPN performance.
PMI with FPGA is supported on SRX5400, SRX5600, and SRX5800 with SPC3 cards.
Options
disabled | Disable inline FPGA crypto |
enabled | Enable inline FPGA crypto |
Required Privilege Level
security
Release Information
Statement introduced in Junos OS Release 20.4R1.