- establish-tunnels (immediately
| on-traffic);
- [edit security ipsec vpn vpn-name]
Statement introduced in Release 8.5 of JUNOS software.
Specify when IKE is activated: immediately after VPN information is configured and configuration changes are committed, or only when data traffic flows. In the second case, IKE needs to be negotiated with the peer gateway.
This statement is supported on J-series and SRX-series devices.
immediately—IKE is activated immediately after VPN configuration and configuration changes are committed.
on-traffic—IKE is activated only when data traffic flows and must to be negotiated.
For configuration instructions and examples, see the JUNOS Software Security Configuration Guide.
security—To view this statement in the configuration.
security-control—To add this statement to the configuration.