ipsecTunnelAdminStatus
1.3.6.1.4.1.838.3.14.1.4.1.3
This object is the desired state of the tunnel and is
similar to interface administrative state. The default is
'up(1)'. When the ipsecTunnelAdminStatus is set to 'up(1)' for
a dialin parent tunnel, it enables remote clients in this
group to connect to the VPN gateway. When the
ipsecTunnelAdminStatus is set to 'down(2)' for a dialin parent
tunnel, it disables remote clients in this group from
connecting to the VPN gateway. When tunnelAdminStatus is set
to up for siteToSiteStatic, it enables use of statically
configured SAs. Setting it to down, effectively disables use
of statically configured SAs. When tunnelAdminStatus is set
to up for siteToSiteDynamic, it enables the VPN gateway to
start establishments of SAs via ISAKMP. If the ISAKMP failed
to setup SA (for example when the peer is not ready) it will
periodically retry SA establishment indefinetly until it
succeeds. Setting it to down, disables initiation of SAs and
it also disables responding to remote ISAKMP initiation
requests.