HP 1606 Fabric OS FCIP Administrators Guide v6.4.0 (53-1001766-01, November 20 - Page 64

Viewing IPsec information for an FCIP tunnel

Page 64 highlights

3 IPSec implementation over FCIP where type is the policy type and number is the number assigned. For example, to delete the IPsec policy number 10: switch:admin> policy --delete ipsec 10 The policy has been successfully deleted. Viewing IPsec information for an FCIP tunnel 1. Connect to the switch and log in using an account assigned to the admin role. 2. Enter the portShow fcipTunnel command. The following example shows the portShow fcipTunnel command used to display IPsec information for tunnel 3: switch:admin> portshow fciptunnel 8/ge0 3 -ipsec Port: ge0 Tunnel ID 3 Remote IP Addr 192.175.5.200 Local IP Addr 192.175.5.100 Remote WWN Not Configured Local WWN 10:00:00:05:1e:37:00:20 Compression off Fastwrite on Tape Pipelining on Uncommitted bandwidth, minimum of 1000 Kbps (0.001000 Gbps) SACK on Min Retransmit Time 100 Keepalive Timeout 80 Max Retransmissions 9 Status : Active Connected Count: 1 Uptime 1 hour, 16 minutes, 4 seconds IKE Policy 7 Authentication Algorithm: MD5 Encryption: 3DES Perfect Forward Secrecy: off Diffie-Hellman Group: 1 SA Life (seconds): 200000 IPSec Policy 7 Authentication Algorithm: AES-XCBC Encryption: 3DES SA Life (seconds): 1500000 Pre-Shared Key 1234567890123456 50 Fabric OS FCIP Administrator's Guide 53-1001766-01

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116

50
Fabric OS FCIP Administrator’s Guide
53-1001766-01
IPSec implementation over FCIP
3
where
type
is the policy type and
number
is the number assigned.
For example, to delete the IPsec policy number 10:
switch:admin>
policy --delete ipsec 10
The policy has been successfully deleted.
Viewing IPsec information for an FCIP tunnel
1.
Connect to the switch and log in using an account assigned to the admin role.
2.
Enter the
portShow fcipTunnel
command.
The following example shows the
portShow fcipTunnel
command used to display IPsec
information for tunnel 3:
switch:admin> portshow fciptunnel 8/ge0 3 -ipsec
Port: ge0
-------------------------------------------
Tunnel ID 3
Remote IP Addr 192.175.5.200
Local IP Addr 192.175.5.100
Remote WWN Not Configured
Local WWN 10:00:00:05:1e:37:00:20
Compression off
Fastwrite on
Tape Pipelining on
Uncommitted bandwidth, minimum of 1000 Kbps (0.001000 Gbps)
SACK on
Min Retransmit Time 100
Keepalive Timeout 80
Max Retransmissions 9
Status : Active
Connected Count: 1
Uptime 1 hour, 16 minutes, 4 seconds
IKE Policy 7
-----------------------------------------
Authentication Algorithm: MD5
Encryption: 3DES
Perfect Forward Secrecy: off
Diffie-Hellman Group: 1
SA Life (seconds): 200000
IPSec Policy 7
-----------------------------------------
Authentication Algorithm: AES-XCBC
Encryption: 3DES
SA Life (seconds): 1500000
Pre-Shared Key 1234567890123456