| Configuration
Mode Statements |
|
[edit service-set name ]
|
–
|
|
[edit services ipsec-vpn ike]
-
policy {...}
-
proposal {...}
|
[edit security ike]
-
policy {...}
-
proposal {...}
|
|
[edit services ipsec-vpn ipsec]
-
policy {...}
-
proposal {...}
|
[edit security ipsec]
-
policy {...}
-
proposal {...}
|
|
[edit services ipsec-vpn rule rule-name ]
|
[edit interface es- fpc / pic
/port ]
-
tunnel destination address
|
|
[edit services ipsec-vpn rule rule-name term term-name]
-
from match-conditions {...}
then dynamic {...}
-
from match-conditions {...}
then manual {...}
|
[edit security ipsec]
-
security-association name dynamic {...}
-
security-association name manual {...}
|
|
[edit services ipsec-vpn rule-set]
|
–
|
|
[edit services service-set ipsec-vpn]
|
[edit interface es- fpc /pic /port ]
|
| Operational
Mode Commands |
|
clear security pki ca-certificate
|
–
|
|
clear security pki certificate-request
|
–
|
|
clear security pki local-certificate
|
–
|
|
clear services ipsec-vpn certificates
|
–
|
|
request security pki ca-certificate enroll
|
request security certificate (unsigned)
|
|
request security pki ca-certificate load
|
request system certificate add
|
|
request security pki generate-certificate-request
|
–
|
|
request security pki generate-key-pair
|
request security key-pair
|
|
request security pki local-certificate enroll
|
request security certificate (signed)
|
|
request security pki local-certificate load
|
request system certificate add
|
|
show security pki ca-certificate
|
show system certificate
|
|
show security pki certificate-request
|
–
|
|
show security pki crl
|
–
|
|
show security pki local-certificate
|
show system certificate
|
|
show services ipsec-vpn certificates
|
show ipsec certificates
|
|
show services ipsec-vpn ike security-associations
|
show ike security-associations
|
|
show services ipsec-vpn ipsec security-associations
|
show ipsec security-associations
|