lifetime (IPsec)

Configures the lifetime period of an IPsec security association (SA) for an IPsec profile.
Syntax
lifetime minutes
no lifetime minutes
Command Default

The default lifetime period for an IPsec SA is 480 minutes (8 hours).

Parameters
minutes
Specifies the lifetime period (in minutes) for an IPsec SA. The range is from 10 through 1440.
Modes

IPsec profile configuration mode

Usage Guidelines

Five minutes before an IPsec SA is due to expire, a new IPsec SA is started.

The no form of the command resets the IPsec SA lifetime period to the default value.

Examples

The following example shows how to set the IPsec SA lifetime value to 720 minutes for an IPsec profile named prof-mktg.

device(config)# ipsec profile prof_mktg
device(config-ipsec-profile-prof_mktg)# lifetime 720 
History
Release version Command history
08.0.50 This command was introduced.