HP 6125XLG R2306-HP 6125XLG Blade Switch Security Command Reference - Page 253

Table 38, Command output, Display the number of IPsec tunnels.

Page 253 highlights

Table 38 Command output Field Src Address Dst Address Inbound SPI Outbound SPI Status Description Source IP address of the IPsec tunnel. For IPsec SAs created by using IPsec profiles, "-" is displayed in this field. Destination IP address of the IPsec tunnel. For IPsec SAs created by using IPsec profiles, "-" is displayed in this field. Valid SPI in the inbound direction of the IPsec tunnel. If the tunnel uses two security protocols, two SPIs in the inbound direction are displayed in two lines. Valid SPI in the outbound direction of the IPsec tunnel. If the tunnel uses two security protocols, two SPIs in the outbound direction are displayed in two lines. Stateful failover status of the IPsec SA: active or backup. Currently, "active" is displayed for all cases. # Display the number of IPsec tunnels. display ipsec tunnel count Total IPsec Tunnel Count: 2 # Display information about all IPsec tunnels. display ipsec tunnel Tunnel ID: 0 Status: active Perfect forward secrecy: SA's SPI: outbound: 2000 (0x000007d0) inbound: 1000 (0x000003e8) outbound: 4000 (0x00000fa0) inbound: 3000 (0x00000bb8) Tunnel: local address: remote address: Flow: [AH] [AH] [ESP] [ESP] Tunnel ID: 1 Status: active Perfect forward secrecy: SA's SPI: outbound: 6000 (0x00001770) inbound: 5000 (0x00001388) outbound: 8000 (0x00001f40) inbound: 7000 (0x00001b58) Tunnel: local address: 1.2.3.1 remote address: 2.2.2.2 Flow: [AH] [AH] [ESP] [ESP] 244

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321

244
Table 38
Command output
Field
Description
Src Address
Source IP address of the IPsec tunnel.
For IPsec SAs created by using IPsec profiles, "–" is displayed in this field.
Dst Address
Destination IP address of the IPsec tunnel.
For IPsec SAs created by using IPsec profiles, "–" is displayed in this field.
Inbound SPI
Valid SPI in the inbound direction of the IPsec tunnel.
If the tunnel uses two security protocols, two SPIs in the inbound direction are
displayed in two lines.
Outbound SPI
Valid SPI in the outbound direction of the IPsec tunnel.
If the tunnel uses two security protocols, two SPIs in the outbound direction are
displayed in two lines.
Status
Stateful failover status of the IPsec SA: active or backup.
Currently, "active" is displayed for all cases.
# Display the number of IPsec tunnels.
<Sysname> display ipsec tunnel count
Total IPsec Tunnel Count: 2
# Display information about all IPsec tunnels.
<Sysname> display ipsec tunnel
Tunnel ID: 0
Status: active
Perfect forward secrecy:
SA's SPI:
outbound:
2000
(0x000007d0)
[AH]
inbound:
1000
(0x000003e8)
[AH]
outbound:
4000
(0x00000fa0)
[ESP]
inbound:
3000
(0x00000bb8)
[ESP]
Tunnel:
local
address:
remote address:
Flow:
Tunnel ID: 1
Status: active
Perfect forward secrecy:
SA's SPI:
outbound:
6000
(0x00001770)
[AH]
inbound:
5000
(0x00001388)
[AH]
outbound:
8000
(0x00001f40)
[ESP]
inbound:
7000
(0x00001b58)
[ESP]
Tunnel:
local
address: 1.2.3.1
remote address: 2.2.2.2
Flow: