No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

AR500, AR510, and AR530 V200R007 Commands Reference

This document describes all the configuration commands of the device, including the command function, syntax, parameters, views, default level, usage guidelines, examples, and related commands.
Rate and give feedback :
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
encryption-algorithm

encryption-algorithm

Function

The encryption-algorithm command specifies an encryption algorithm used by an IKE proposal.

The undo encryption-algorithm command restores the default encryption algorithm used by an IKE proposal.

By default, an IKE proposal uses the AES-CBC-256 encryption algorithm.

Format

encryption-algorithm { 3des-cbc | des-cbc | aes-cbc-128 | aes-cbc-192 | aes-cbc-256 }

undo encryption-algorithm

Parameters

Parameter

Description

Value

3des-cbc

Indicates that the IKE proposal uses the 168-bit Triple Data Encryption Standard (3DES) encryption algorithm in CBC mode.

-

des-cbc

Indicates that the IKE proposal uses the 56-bit encryption algorithm in CBC mode.

-

aes-cbc-128

Indicates that the IKE proposal uses the 128-bit Advanced Encryption Standard (AES) encryption algorithm.

-

aes-cbc-192

Indicates that the IKE proposal uses the 192-bit AES algorithm encryption.

-

aes-cbc-256

Indicates that the IKE proposal uses the 256-bit AES algorithm encryption.

-

Views

IKE proposal view

Default Level

2: Configuration level

Usage Guidelines

The number of bits in the encryption algorithm is the length of the key. A larger key length indicates a more secure algorithm but a slower calculation speed.

The DES and 3DES algorithms are not recommended because they cannot meet your security defense requirements.

Example

# Configure IKE proposal 10 to use the 128-bit AES encryption algorithm.

<Huawei> system-view
[Huawei] ike proposal 10
[Huawei-ike-proposal-10] encryption-algorithm aes-cbc-128
Translation
Download
Updated: 2019-05-29

Document ID: EDOC1000097293

Views: 52848

Downloads: 102

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Share
Previous Next