H3C S6550X-HI Series Command Reference Manual page 2347

Table of Contents

Advertisement

Local SPI: 8f8af3dbf5023a00
Remote SPI: 0131565b9b3155fa
Local ID type: FQDN
Local ID: device_a
Remote ID type: FQDN
Remote ID: device_b
Auth sign method: Pre-shared key
Auth verify method: Pre-shared key
Integrity algorithm: HMAC_MD5
PRF algorithm: HMAC_MD5
Encryption algorithm: AES-CBC-192
Life duration: 86400 secs
Remaining key duration: 85604 secs
Diffie-Hellman group: MODP1024/Group2
NAT traversal: Not detected
DPD: Interval 30 secs, retry interval 10 secs
Transmitting entity: Initiator
Local window: 1
Remote window: 1
Local request message ID: 2
Remote request message ID: 2
Local next message ID: 0
Remote next message ID: 0
Pushed IP address: 192.168.1.5
Assigned IP address: 192.168.2.24
Table 5 Command output
Field
Tunnel ID
Local IP/Port
Remote IP/Port
Outside VRF
Inside VRF
Local SPI
Remote SPI
Local ID type
Description
ID of the IPsec tunnel to which the IKEv2 SA belongs.
IP address and port number of the local security gateway.
IP address and port number of the remote security gateway.
Name of the VPN instance to which the protected outbound
data flow belongs.
If the protected outbound data flow belongs to the public
network, this field displays a hyphen (-).
Name of the VPN instance to which the protected inbound data
flow belongs.
If the protected inbound data flow belongs to the public
network, this field displays a hyphen (-).
SPI that the local end uses.
SPI that the remote end uses.
ID type of the local security gateway.
13

Advertisement

Table of Contents
loading

Table of Contents