ikev2 pre-shared-key check disable

Function

The ikev2 pre-shared-key check disable command disables the pre-shared key check function when IKEv2 pre-shared key authentication is used.

The undo ikev2 pre-shared-key check disable command restores the default configuration.

By default, the pre-shared key check function is enabled when IKEv2 pre-shared key authentication is used.

This command is supported only on the NetEngine 8000 F1A.

Format

ikev2 pre-shared-key check disable

undo ikev2 pre-shared-key check disable

Parameters

None

Views

IKE peer view

Default Level

2: Configuration level

Task Name and Operations

Task Name Operations
ike write

Usage Guidelines

When the security gateway and multiple base stations use the pre-shared key mode to negotiate an IPsec tunnel, the pre-shared key and security gateway can be used for identity authentication. If the ikev2 pre-shared-key check disable command is configured to disable the pre-shared key check function, the base stations and security gateway can successfully negotiate with no pre-shared key being configured.

The ikev2 pre-shared-key check disable command configuration takes effect only when no pre-shared key is configured.

Example

# Disable the pre-shared key check function.
<HUAWEI> system-view
[~HUAWEI] ike peer peer1
[*HUAWEI-ike-peer-peer1] ikev2 pre-shared-key check  disable
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >