< Home

sa trigger-mode

Function

The sa trigger-mode command configures a mode in which IPSec tunnel setup is triggered.

The undo sa trigger-mode command restores the default mode in which IPSec tunnel setup is triggered.

By default, the IPSec tunnel trigger mode is traffic-based.

Format

sa trigger-mode { auto | traffic-based }

undo sa trigger-mode

Parameters

Parameter Description Value
auto

Indicates that IPSec tunnel setup is triggered automatically.

-
traffic-based

Indicates that IPSec tunnel setup is triggered by traffic.

-

Views

ISAKMP IPSec policy view

Default Level

2: Configuration level

Usage Guidelines

If auto is specified, IPSec tunnel setup is triggered automatically. If traffic-based is specified, an IPSec tunnel is triggered by outgoing data flows matching the IPSec policy.

In an IPSec intelligent path selection scenario, the mode in which IPSec tunnel setup is triggered is auto and cannot be changed using the sa trigger-mode command.

Example

# Set the mode in which IPSec tunnel setup is triggered to traffic-based.

<sysname> system-view
[sysname] ipsec policy test 10 isakmp
[sysname-ipsec-policy-isakmp-test-10] sa trigger-mode traffic-based
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >