MIB Viewer

slcNetVPNPerfectForwardSecrecy

OBJECT-TYPE
1.3.6.1.4.1.244.1.1.1.4.20
Access
read-only
Status
current
Sub-identifiers
0
When a new IPSec SA is negotiated after the IPSec SA lifetime expires, a new Diffie-Hellman key exchange can be performed to generate a new session key to be used to encrypt the data being sent through the tunnel. If this is enabled, it provides greater security, since the old session keys are destroyed.
EnabledState