mode (ike)
Syntax
mode (aggressive | main);
Description
Define an IKE policy mode.
Default
main
Options
aggressive—Takes half the number of messages of main mode, has less negotiation power, and does not provide identity protection.
Note:
In Junos FIPS mode, the aggressive
option is
not supported.
main
—Uses six messages, in three peer-to-peer
exchanges, to establish the IKE SA. These three steps include the
IKE SA negotiation, a Diffie-Hellman exchange, and authentication
of the peer. Also provides identity protection.
Required Privilege Level
system—To view this statement in the configuration.
system-control—To add this statement to the configuration.
Release Information
Statement introduced before Junos OS Release 7.4.