HP 5920 Command Reference Manual page 336

Table of Contents

Advertisement

# Display the number of IPsec SAs.
<Sysname> display ipsec sa count
Total IPsec SAs count: 4
# Display information about all IPsec SAs.
<Sysname> display ipsec sa
-------------------------------
Interface: Vlan-interface1
-------------------------------
-----------------------------
IPsec policy: r2
Sequence number: 1
Mode: isakmp
-----------------------------
Tunnel id: 3
Encapsulation mode: tunnel
Perfect Forward Secrecy:
Path MTU: 1443
Tunnel:
local
address: 2.2.2.2
remote address: 1.1.1.2
Flow:
sour addr: 192.168.2.0/255.255.255.0
dest addr: 192.168.1.0/255.255.255.0
[Inbound ESP SAs]
SPI: 3564837569 (0xd47b1ac1)
Transform set: ESP-ENCRYPT-AES-CBC-128 ESP-AUTH-SHA1
SA duration (kilobytes/sec): 4294967295/604800
SA remaining duration (kilobytes/sec): 1843200/2686
Max received sequence-number: 5
Anti-replay check enable: Y
Anti-replay window size: 32
UDP encapsulation used for NAT traversal: N
Status: active
[Outbound ESP SAs]
SPI: 801701189 (0x2fc8fd45)
Transform set: ESP-ENCRYPT-AES-CBC-128 ESP-AUTH-SHA1
SA duration (kilobytes/sec): 4294967295/604800
SA remaining duration (kilobytes/sec): 1843200/2686
Max sent sequence-number: 6
UDP encapsulation used for NAT traversal: N
Status: active
-------------------------------
Global IPsec SA
-------------------------------
port: 0
protocol: IP
port: 0
protocol: IP
324

Advertisement

Table of Contents
loading

This manual is also suitable for:

59005920 series5900 series

Table of Contents