Feature Explorer AI AI

×

Subscribe now to get the Latest Updates

Watch a 2-minute overview video

Distinguished name support in IPSec

More Information:

Distinguished name support in IPSec

The IKE identification (IKE ID) is used for validation of VPN peer devices during IKE negotiation. The IKE ID received by device from a remote peer can be an IPv4 or an IPv6 address, a hostname, a fully qualified domain name (FQDN), or a distinguished name (DN). The IKE ID sent by the remote peer needs to match what is expected by the router. Otherwise, IKE ID validation fails and the VPN is not established. A distinguished name (DN) is a name used with digital certificates to uniquely identify a user.You can use a container keyword to specify the order of the fields in a distinguished name and their values must exactly match the configured distinguished name, or use a wildcard keyword to specify that the values of fields must match but the order of the fields does not matter.
Product / Application Software Introduced Release
MX5 Junos OS 19.1R1
MX10 Junos OS 19.1R1
MX40 Junos OS 19.1R1
MX80 Junos OS 19.1R1
MX104 Junos OS 19.1R1
MX204 Junos OS 19.1R1
MX240 Junos OS 19.1R1
MX301 Junos OS 25.4R1
MX304 Junos OS 22.2R3
MX480 Junos OS 19.1R1
MX960 Junos OS 19.1R1
MX2008 Junos OS 19.1R1
MX2010 Junos OS 19.1R1
MX2020 Junos OS 19.1R1
MX10003 Junos OS 19.1R1
MX10004 Junos OS 22.3R1
MX10008 Junos OS 19.1R1
MX10016 Junos OS 19.2R1