The policy enable command enables a policy in an IPSec policy group.
The undo policy enable command disables a policy in an IPSec policy group.
By default, all the policies in an IPSec policy group are enabled.
policy enable
undo policy enable
None
ISAKMP IPSec policy view, IPSec policy template view
2: Configuration level
After you disable a policy, the policy is not used for tunnel establishment.
# Disable policy 1 in the IPSec policy group.
<sysname> system-view [sysname] ipsec policy map1 1 isakmp [sysname-ipsec-policy-isakmp-map1-1] undo policy enable