Skip to main content
Cisco SD-WAN
Product Documentation
Viptela Documentation


vpn interface ipsec ike rekey—Modify the IPsec rekeying timer to use during IKE key exchanges (on vEdge routers only).

vpn interface ipsec ipsec rekey—Modify the IPsec rekeying timer to use on an IPsec tunnel that is being used for IKE key exchange (on vEdge routers only).

vManage Feature Template

For vEdge routers only:

Configuration ► Templates ► VPN Interface IPsec

Command Hierarchy

vpn vpn-id
  interface ipsecnumber
      rekey seconds
      rekey seconds


Rekeying Time
How often IKE changes the AES key that is being used during IKE key exchanges.
Range: 30 through 1209600 seconds (up to 14 days)
Default: 3600 seconds (1 hour) (for ipsec rekey); 14400 seconds (4 hours) (for ike rekey)


Change the rekeying interval for IKE key exchanges to 7 days:

vEdge(config)# vpn 1 interface ipsec1 ike rekey-interval 604800

Release Information

Command introduced in Viptela Software Release 17.2.​

Additional Information

See the Configuring IKE article for your software release.

  • Was this article helpful?