3 managing vpn settings via the cli – Westermo RedFox Series User Manual
Page 819

Westermo OS Management Guide
Version 4.17.0-0
35.3
Managing VPN settings via the CLI
The table below shows VPN management features available via the CLI.
Command
Default
Section
Configure VPN Settings
tunnel
[no] ipsec-nat-traversal
Disabled
[no] ipsec-mtu-override <BYTES>
1419
[no] ipsec <INDEX>
[no] enable
Enabled
[no] aggressive
Main mode
[no] pfs
Enabled
[no] ike crypto <3des|aes128|. . . >
Auto
auth <md5|sha1> dh <1024|. . . >
[no] esp crypto <3des|aes128|. . . >
Auto
auth <md5|sha1> dh <auto|. . . >
[no] method <psk|cert>
PSK
[no] secret <PASSWORD>
Empty
[no] local-cert <LABEL>
Disabled
[no] remote-cert <LABEL>
Disabled
[no] remote-ca <same|any|
Same
dn <DNSTRING>>
[no] peer <IPADDR|FQDN>
Any
[no] outbound <IFACE>
Auto
[no] local-id
Auto
<inet <IPADDR|DOMAIN>|
name <DOMAIN|USER> |
email <USER@DOMAIN> |
key <ID> | dn <DNSTRING>>
[no] remote-id
Auto
<inet <IPADDR|DOMAIN>|
name <DOMAIN|USER> |
email <USER@DOMAIN> |
key <ID> | dn <DNSTRING>>
[no] local-subnet <SUBNET/LEN |
Auto
SUBNET NETMASK>
Continued on next page
➞ 2015 Westermo Teleindustri AB
819