show crypto engine accelerator sa-database
DH Summary
Router#
Table 6-20
Table 6-20 show crypto engine accelerator sa-database Field Descriptions
Field
Flow Summary
Index
Algorithms
SA Summary
Index
DH-Index
Cisco Broadband Cable Command Reference Guide
6-144
004
001(deleted)
012
001(deleted)
016
001(deleted)
017
004(deleted)
018
002(deleted)
019
009(deleted)
Index Group Config
007
001
Shared Secret
describes the fields shown in the display for this command.
Description
Unique identifier for the flow.
The Flow Algorithm field displays the transformation set for each SA:
Mode
•
tunnel—Original IP packet is encrypted and encapsulated.
transport—Only the data portion of the IP packet is encrypted and
•
encapsulated.
Direction
inbound—Encryption is performed on incoming packets.
•
outbound—Encryption is performed on outgoing packets.
•
Encapsulating Security Protocol (ESP) Transform
•
esp-des—56-bit DES encryption.
•
esp-3des—168-bit 3DES encryption.
•
esp-null—No encryption algorithm (used only for test).
ESP Authentication Transform
esp-md5-hmac—MD5 (HMAC variant).
•
esp-sha-hmac—SHA (HMAC variant).
•
Authentication Header (AH) Transform
•
ah-md5-hmac—MD5 (HMAC variant).
•
ah-sha-hmac—SHA (HMAC variant).
Unique identifier for the SA.
Unique identifier for the Diffie-Hellman group used in this SA. If the
connection is not currently active, the text "(deleted)" follows the index
number.
DES SHA
DES SHA
DES SHA
DES SHA
DES SHA
DES SHA
Chapter 6
Cable CPE Commands
OL-1581-07