H3C S6550X-HI Series Command Reference Manual page 2239

Table of Contents

Advertisement

Max received sequence-number: 5
Anti-replay check enable: Y
Anti-replay window size: 32
UDP encapsulation used for NAT traversal: N
Status: Active
[Outbound ESP SAs]
SPI: 801701189 (0x2fc8fd45)
Connection ID: 64424509441
Transform set: ESP-ENCRYPT-AES-CBC-128 ESP-AUTH-SHA1
SA duration (kilobytes/sec): 4294967295/604800
SA remaining duration (kilobytes/sec): 1843200/2686
Max sent sequence-number: 6
UDP encapsulation used for NAT traversal: N
Status: Active
-------------------------------
Global IPsec SA
-------------------------------
-----------------------------
IPsec profile: profile
Mode: Manual
-----------------------------
Encapsulation mode: transport
[Inbound AH SA]
SPI: 1234563 (0x0012d683)
Connection ID: 64426789452
Transform set: AH-SHA1
No duration limit for this SA
[Outbound AH SA]
SPI: 1234563 (0x002d683)
Connection ID: 64428999468
Transform set: AH-SHA1
No duration limit for this SA
Table 5 Command output
Field
Interface
IPsec policy
IPsec profile
Sequence number
Mode
Flow table status
Description
Interface where the IPsec SA belongs.
Name of the IPsec policy.
Name of the IPsec profile.
Sequence number of the IPsec policy entry.
Negotiation mode used by the IPsec policy:
Manual—Manual mode.
ISAKMP—IKE negotiation mode.
Template—IPsec policy template mode.
Status of the flow entries deployed by IPsec: Active or Inactive.
14

Advertisement

Table of Contents
loading

Table of Contents