Encapsulation-Mode - HPE FlexNetwork HSR6800 Security Command Reference

Hide thumbs Also See for FlexNetwork HSR6800:
Table of Contents

Advertisement

outbound: 12345 (0x3039) [ESP]
tunnel:
flow:
# Display information about IPsec tunnels in aggregation mode.
<Sysname> display ipsec tunnel
total tunnel: 2
------------------------------------------------
connection id: 4
perfect forward secrecy:
SA's SPI:
inbound :
outbound : 675720232 (0x2846ac28) [ESP]
tunnel :
local address:
remote address : 44.44.44.45
flow :
as defined in acl 3001
Table 44 Command output
Field
connection id
perfect forward secrecy
SA's SPI
tunnel
flow
as defined in acl 3001

encapsulation-mode

Use encapsulation-mode to set the encapsulation mode that the security protocol uses to
encapsulate IP packets.
Use undo encapsulation-mode to restore the default.
Syntax
encapsulation-mode { transport | tunnel }
undo encapsulation-mode
Default
A security protocol encapsulates IP packets in tunnel mode.
Views
IPsec transform set view
Default command level
2: System level
2454606993 (0x924e5491) [ESP]
44.44.44.44
Description
Connection ID, used to uniquely identify an IPsec Tunnel.
Perfect forward secrecy, indicating which DH group is to be used for fast
negotiation mode in IKE phase 2.
SPIs of the inbound and outbound SAs.
Local and remote addresses of the tunnel.
Data flow protected by the IPsec tunnel, including source IP address,
destination IP address, source port, destination port and protocol.
The IPsec tunnel protects all data flows defined by ACL 3001.
271

Advertisement

Table of Contents
loading

Table of Contents