H3C S6550X-HI Series Command Reference Manual page 2291

Table of Contents

Advertisement

connection-stop
IPsec policy entries with the same description.
decrypt-failure
encrypt-failure
: Specifies notifications globally.
global
invalid-sa-failure
no-sa-failure
policy-add
policy-attach
policy-delete
policy-detach
tunnel-start
tunnel-stop
Usage guidelines
If you do not specify any keywords, this command enables or disables all SNMP notifications for
IPsec.
To generate and output SNMP notifications for a specific IPsec failure type or event type, perform the
following tasks:
1.
Enable SNMP notifications for IPsec globally.
2.
Enable SNMP notifications for the failure type or event type.
Examples
# Enable SNMP notifications for IPsec globally.
<Sysname> system-view
[
]
Sysname
# Enable SNMP notifications for events of creating IPsec tunnels.
[
]
Sysname
tfc enable
Use
tfc enable
Use
undo tfc enable
Syntax
tfc enable
undo tfc enable
Default
TFC padding is disabled.
Views
IPsec policy view
IPsec policy template view
: Specifies notifications about successful removal of the last IPsec tunnel under
: Specifies notifications about decryption failures.
: Specifies notifications about encryption failures.
: Specifies notifications about invalid-SA failures.
: Specifies notifications about SA-not-found failures.
: Specifies notifications about events of adding IPsec policies.
: Specifies notifications about events of applying IPsec policies to interfaces.
: Specifies notifications about events of deleting IPsec policies.
: Specifies notifications about events of removing IPsec policies from interfaces.
: Specifies notifications about events of creating IPsec tunnels.
: Specifies notifications about events of deleting IPsec tunnels.
snmp-agent trap enable ipsec global
snmp-agent trap enable ipsec tunnel-start
to enable Traffic Flow Confidentiality (TFC) padding.
to disable TFC padding.
66

Advertisement

Table of Contents
loading

Table of Contents