hash
authentication
DH Group
lifetime(seconds):
Default protection policy suite
encryption
hash
authentication
DH Group
lifetime(seconds):
5.1.6 display ike sa
Syntax
display ike sa
View
All views
Parameter
None
Description
Using the display ike sa command, you can view the IKE SA parameter.
display ike sa displays the security tunnel list, including peer address, tunnel flags,
negotiation phase and DO. The security tunnel and the SA are two different concepts.
The former is a two-way tunnel, and IPSec SA is a one-way connection. So a security
tunnel is composed of one pair or several pairs of SAs.
For related commands, see ike proposal.
Example
# Display the IKE SA parameter.
[3Com] display ike sa
Connect-ID
2
1
Flag meaning
RD--READY ST--STAYALIVE RL--REPLACED FD--FADING TO--TIMEOUT
:
SHA
:
PRE_SHARED
:
MODP_768
86400
:
DES_CBC
:
SHA
:
PRE_SHARED
:
MODP_768
86400
Peer
Flag
11.0.0.2
RD
11.0.0.2
RD
Phase
Doi
2
IPSEC
1
IPSEC
Security
93
Need help?
Do you have a question about the 3C13618 and is the answer not in the manual?