SROS Command Line Interface Reference Guide
show crypto ipsec
Use the show crypto ipsec command to display information regarding the IPSec configuration. Variations
of this command include the following:
show crypto ipsec sa
show crypto ipsec sa address <ip address>
show crypto ipsec sa brief
show crypto ipsec sa map <mapname>
show crypto ipsec transform-set
show crypto ipsec transform-set <transform-set name>
Syntax Description
sa
sa address <ip address>Displays all IPSec security associations associated with the designated peer IP
sa brief
sa map <mapname>
transform-set
<transform-set name>
Default Values
No default value necessary for this command.
Usage Examples
The following is a sample from the show crypto ipsec sa command:
ProCurve>enable
ProCurve#show crypto ipsec sa
IPSec Security Associations: Total IPSec SAs: 2
Peer IP Address: 192.168.1.2
Direction: Inbound
SPI: 0xD863FF3F (3630432063)
Encapsulation: ESP
RX Bytes: 22085
Selectors: Src:10.0.0.0/255.0.0.0 Port:ANY Proto:ALL IP
Dst:172.16.16.0/255.255.255.0 Port:ANY Proto:ALL IP
Hard Lifetime: 26650
Soft Lifetime: 0
Out-of-Sequence Errors: 0
5991-2114
Displays all IPSec security associations.
address.
Displays a brief listing of IPSec security associations.
Displays all IPSec security associations associated with the designated crypto
map name.
Displays all defined transform sets.
Displays information for a specific transform set.
© Copyright 2007 Hewlett-Packard Development Company, L.P.
Enable Mode Command Set
174