No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

Command Reference

AR500, AR510, and AR530 V200R007

This document describes all the configuration commands of the device, including the command function, syntax, parameters, views, default level, usage guidelines, examples, and related commands.
Rate and give feedback :
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
prf

prf

Function

The prf command specifies an algorithm used to generate the pseudo random number.

By default, the HMAC-SHA2-256 algorithm is used.

Format

prf { aes-xcbc-128 | hmac-md5 | hmac-sha1 | hmac-sha2-256 | hmac-sha2-384 | hmac-sha2-512 }

Parameters

Parameter

Description

Value

aes-xcbc-128

Specifies 128-bit AES-XCBC-MAC-128 as the algorithm used to generate the pseudo random number.

-

hmac-md5

Specifies 128-bit HMAC-MD5 as the algorithm used to generate the pseudo random number.

-

hmac-sha1

Specifies 160-bit HMAC-SHA-1 as the algorithm used to generate the pseudo random number.

-

hmac-sha2-256

Specifies 256-bit HMAC-SHA-256 as the algorithm used to generate the pseudo random number.

-

hmac-sha2-384

Specifies 384-bit HMAC-SHA-384 as the algorithm used to generate the pseudo random number.

-

hmac-sha2-512

Specifies 512-bit HMAC-SHA-512 as the algorithm used to generate the pseudo random number.

-

Views

IKE proposal view

Default Level

2: Configuration level

Usage Guidelines

Only IKEv2 requires the prf command.

If you run the prf command multiple times, only the latest configuration takes effect.

The HMAC-MD5 and HMAC-SHA-1 algorithms are not recommended because they cannot meet your security defense requirements.

Example

# Use the AES-XCBC-MAC-128 algorithm to generate the pseudo random number.

<Huawei> system-view
[Huawei] ike proposal 3
[Huawei-ike-proposal-3] prf aes-xcbc-128
Related Topics
Translation
Download
Updated: 2019-02-18

Document ID: EDOC1000097293

Views: 36386

Downloads: 101

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Share
Previous Next