Feature Explorer AI AI

×

Subscribe now to get the Latest Updates

Watch a 2-minute overview video

Configurable pseudorandom function in IKEv2 with iked process

More Information:

Configurable pseudorandom function in IKEv2 with iked process

You can configure Internet Key Exchange version 2 (IKEv2) proposals with a specific pseudorandom function (PRF) algorithm independent of the authentication algorithm. Use the prf-algorithm option to configure the following algorithms at the [edit security ike proposal proposal-name] hierarchy level in the IPsec VPN service with the iked process:

You cannot combine a PRF with Authenticated Encryption with Associated Data (AEAD) cipher suites such as AES-GCM or ChaCha20-Poly1305 algorithm.

Product / Application Software Introduced Release
MX240 Junos OS 26.2R1
MX301 and MX301-M Junos OS 26.2R1
MX304 Junos OS 26.2R1
MX480 Junos OS 26.2R1
MX960 Junos OS 26.2R1
MX10008 Junos OS 26.2R1
vSRX Junos OS 26.2R1
cSRX Junos OS 26.2R1
SRX1500 Junos OS 26.2R1
SRX1600 Junos OS 26.2R1
SRX2300 Junos OS 26.2R1
SRX4100 Junos OS 26.2R1
SRX4120 Junos OS 26.2R1
SRX4200 Junos OS 26.2R1
SRX4300 Junos OS 26.2R1
SRX4600 Junos OS 26.2R1
SRX4700 Junos OS 26.2R1
SRX5400 Junos OS 26.2R1
SRX5600 Junos OS 26.2R1
SRX5800 Junos OS 26.2R1