Show Crypto Ipsec Sa - Avaya G450 Cli Reference Manual

Hide thumbs Also See for G450:
Table of Contents

Advertisement

User Level
read-write
Context
ip crypto-list
Example
To set the local IP address for the IPSec tunnels to 192.168.49.1:
G450-001(crypto 901)# local-address 192.168.49.1
To set the local IP address for the IPSec tunnels to that of the FastEthernet 10/2.0:
G450-001(crypto 901)# local-address FastEthernet 10/2.0
Related Commands
description (ip
rule), destination-ip,
show ip crypto-list

show crypto ipsec sa

Use the show crypto ipsec sa command to display the IPSec SA database and related
runtime, statistical, and configuration information. If no crypto-list, crypto-list rule, or peer IP
address are specified, then all SAs are displayed, sorted first by interface and then by crypto-list
rule index.
Note:
The IPSec SA statistics counters are reset when any of the following occurs:
Note:
- The
-
avipsMonitorRstCntrs
- The
- The crypto-list is activated on an interface for the first time.
- A failing-over to a different peer occurs.
- A new local-address is learned (due to DHCP, PPPoE, user configuration).
Note:
The IP Payload Compression (IPPCP) numbers refer to data as it is presented to
Note:
the compression/decompression engine, which is before outbound protection
and after inbound de-protection. Hence, the numbers do not take into account
encapsulation and encryption overheads.
ip
crypto-list,
clear crypto sa counters
is set in the MIB (equivalent to the above).
clear crypto sa
ip-rule
(VPN),
command is used.
all command is used.
protect crypto
map, source-ip,
Issue 1 January 2008
VPN
1249

Advertisement

Table of Contents
loading

Table of Contents