set security ike policy ike_pol_RUH-HO mode aggressive set security ike policy ike_pol_RUH-HO proposal-set standard set security ike policy ike_pol_RUH-HO pre-shared-key ascii-text "$9$f5QF6/tBRSqmPT3n9CAtu1IE" set security ike gateway gw_RUH-HO ike-policy ike_pol_RUH-HO set security ike gateway gw_RUH-HO address x.x.x.x set security ike gateway gw_RUH-HO dead-peer-detection interval 10 set security ike gateway gw_RUH-HO local-identity user-at-hostname "xxx@abc.com" set security ike gateway gw_RUH-HO external-interface ge-0/0/1.0 set security ipsec proposal RUH protocol esp set security ipsec proposal RUH authentication-algorithm hmac-sha1-96 set security ipsec proposal RUH encryption-algorithm aes-128-cbc set security ipsec proposal RUH lifetime-seconds 3600 set security ipsec proposal RUH lifetime-kilobytes 4608000 set security ipsec policy ipsec_pol_RUH-HO perfect-forward-secrecy keys group2 set security ipsec policy ipsec_pol_RUH-HO proposals RUH set security ipsec vpn RUH-HO bind-interface st0.1 set security ipsec vpn RUH-HO ike gateway gw_RUH-HO set security ipsec vpn RUH-HO ike proxy-identity local 172.16.5.0/24 set security ipsec vpn RUH-HO ike proxy-identity remote 172.16.0.0/23 set security ipsec vpn RUH-HO ike proxy-identity service any set security ipsec vpn RUH-HO ike ipsec-policy ipsec_pol_RUH-HO set security ipsec vpn RUH-HO establish-tunnels immediately