ikev2 proposal

Creates an Internet Key Exchange version 2 (IKEv2) proposal and enters IKEv2 proposal configuration mode.
Syntax
ikev2 proposal name
no ikev2 proposal name
Command Default

The default IKEv2 proposal is def-ike-proposal.

Parameters
name
Specifies the name of an IKEv2 proposal.
Modes

Global configuration mode

Usage Guidelines

An IKEv2 proposal defines a set of algorithms that are used in IKEv2 peer negotiations.

There is a default IKEv2 proposal (def-ike-proposal) that does not require configuration and has the following settings:

  • encryption: AES-CBC-256
  • prf: SHA-384
  • integrity: SHA-384
  • dh-group: 20

Use the ikev2 proposal command to configure any additional IKEv2 proposals.

The default IKEv2 proposal configuration cannot be removed.

Examples

The following example shows how to create an IKEv2 proposal named test_proposal1.

device# configure terminal
device(config)# ikev2 proposal test_proposal1
device(config-ike-proposal-test_proposal1)#
History
Release version Command history
08.0.50 This command was introduced.