Add or delete IPsec tunnel interface.
!!DEPRECATED!! use the tunnel protect APIs instead
- Template Parameters
-
client_index | - opaque cookie to identify the sender |
context | - sender context, to match reply w/ request |
is_add | - add IPsec tunnel interface if nonzero, else delete |
is_ip6 | - tunnel v6 or v4 |
esn | - enable extended sequence numbers if nonzero, else disable |
anti_replay | - enable anti replay check if nonzero, else disable |
local_ip | - local IP address |
remote_ip | - IP address of remote IPsec peer |
local_spi | - SPI of outbound IPsec SA |
remote_spi | - SPI of inbound IPsec SA |
crypto_alg | - encryption algorithm ID |
local_crypto_key_len | - length of local crypto key in bytes |
local_crypto_key | - crypto key for outbound IPsec SA |
remote_crypto_key_len | - length of remote crypto key in bytes |
remote_crypto_key | - crypto key for inbound IPsec SA |
integ_alg | - integrity algorithm ID |
local_integ_key_len | - length of local integrity key in bytes |
local_integ_key | - integrity key for outbound IPsec SA |
remote_integ_key_len | - length of remote integrity key in bytes |
remote_integ_key | - integrity key for inbound IPsec SA |
renumber | - intf display name uses a specified instance if != 0 |
show_instance | - instance to display for intf if renumber is set |
udp_encap | - enable UDP encapsulation for NAT traversal |
tx_table_id | - the FIB id used after packet encap |
salt | - for use with counter mode ciphers |
Definition at line 358 of file ipsec.api.