See the following sections:
-
manual {
-
-
direction (inbound | outbound |
bi-directional) {
-
-
authentication {
- algorithm (hmac-md5-96 | hmac-sha1-96);
- key (ascii-text key | hexadecimal key);
- }
-
auxiliary-spi auxiliary-spi-value;
-
-
encryption {
- algorithm (des-cbc | 3des-cbc);
- key (ascii-text key | hexadecimal key);
- }
-
protocol (ah | esp | bundle);
-
spi spi-value;
- }
- }
- [edit security ipsec security-association]
Statement introduced before JUNOS Release 7.4.
Define a manual IPSec SA.
The remaining statements are explained separately.
See Configuring Manual Security Associations.
admin—To view this statement in the configuration.
admin-control—To add this statement to the configuration.
- manual {
-
-
direction (bidirectional | inbound
| outbound) {
-
protocol esp;
-
spi spi-value;
-
-
encryption {
-
algorithm 3des-cbc;
-
key ascii-text ascii-text-string;
- }
- }
- }
- [edit security ipsec internal security-association]
Statement introduced before JUNOS Release 7.4.
Define a manual security association (SA) for internal Routing-Engine-to-Routing-Engine communication.
The remaining statements are explained separately.
See Configuring Internal IPSec for JUNOS-FIPS.
Crypto Officer—To view and add this statement in the configuration.
Secure Configuration Guide for Common Criteria and JUNOS-FIPS