Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

server (Security Group VPN)

Syntax

Hierarchy Level

Description

CAUTION:

Enabling tracing can adversely impact scale and performance and may increase security risk. We strongly recommend using the trace, tracing, or traceoptions commands only under the guidance of a JTAC support engineer. After collecting the debug information, immediately disable tracing to minimize risk and restore normal system performance.

Configure group VPN server. You can configure the following on the group server:

  • Phase 1 IKE SA for group members

  • Phase 2 IPsec proposal

  • Group identifier, group members, server-member communications, and group policies to be downloaded to members

  • Group VPN trace options

Options

gateway gateway-name

Configure IKE gateway for group VPN server.

ike

Configure Phase 1 security association (SA) with a member on the group server.

ipsec

Configure an IPsec proposal for Phase 2 exchange on the group server.

traceoptions

Configure group VPN tracing options to aid in troubleshooting the IKE issues.

Required Privilege Level

security—To view this statement in the configuration.

security-control—To add this statement to the configuration.

Release Information

Statement introduced in Junos OS Release 10.2.