Variable | Description |
ike-version 1 | IKE v1 is the default for FortiGate IPsec VPNs. IKE Mode Config is also compatible with IKE v2 (RFC 4306). |
mode-cfg enable | Enable IKE Mode Config. |
type dynamic | Any other setting creates an IKE Mode Config client. |
interface <interface_name> | This is a regular IPsec VPN field. Specify the physical, aggregate, or VLAN interface to which the IPsec tunnel will be bound. |
proposal <encryption_combination> | This is a regular IPsec VPN field that determines the encryption and authentication settings that the server will accept. For more information, see “Defining IKE negotiation parameters”. |
ip-version <4 | 6> | This is a regular IPsec VPN field. By default, IPsec VPNs use IPv4 addressing. You can set ip‑version to 6 to create a VPN with IPv6 addressing. |