ikev2 limit

Configures limits for the number of Internet Key Exchange version 2 (IKEv2) security association (SA) sessions.
Syntax
ikev2 limit { max-in-negotiation-sa limit | max-sa limit limit }
no ikev2 limit { max-in-negotiation-sa limit | max-sa limit limit }
Command Default

The default limit (for each type of SA session) is 256.

Parameters
max-in-negotiation-sa limit
Limits the total number of in-negotiation IKEv2 SA sessions. The range is from 1 through 256.
max-sa limit
Limits the total number of IKEv2 SA sessions. The range is from 1 through 256.
Modes

Global configuration mode

Usage Guidelines

The no form of the command returns the specified SA session limit to the default value.

Examples

The following example shows how to limit the maximum number of in-negotiation IKEv2 SA sessions to 10.

device# configure terminal
device(config)# ikev2 limit max-in-negotiation-sa 10

The following example shows how to limit the maximum number of IKEv2 SA sessions to 200.

device# configure terminal
device(config)# ikev2 limit max-sa 200
History
Release version Command history
08.0.50 This command was introduced.