HP 6125XLG R2306-HP 6125XLG Blade Switch Security Command Reference - Page 289

display ike sa, Usage guidelines, Examples, Related commands, Syntax, Views, Predefined user roles

Page 289 highlights

Usage guidelines This command displays the configuration information about all IKE proposals in the descending order of proposal priorities. If no IKE proposal is configured, the command displays the default IKE proposal. Examples # Display the configuration information about all IKE proposals. display ike proposal Priority Authentication Authentication Encryption Diffie-Hellman Duration method algorithm algorithm group (seconds) 1 RSA-SIG SHA1 AES-CBC-128 Group 14 5000 11 PRE-SHARED-KEY SHA1 AES-CBC-128 Group 14 50000 default PRE-SHARED-KEY SHA1 AES-CBC-128 Group 14 86400 Table 40 Command output Field Priority Authentication method Authentication algorithm Encryption algorithm Diffie-Hellman group Duration (seconds) Description Priority of the IKE proposal Authentication method used by the IKE proposal. Authentication algorithm used in the IKE proposal: • MD5-HMAC-MD5 algorithm. • SHA-HMAC-SHA1 algorithm. Encryption algorithm used by the IKE proposal. • 3DES-CBC-168-bit 3DES algorithm in CBC mode. • AES-CBC-128-28-bit AES algorithm in CBC mode. • AES-CBC-192-192-bit AES algorithm in CBC mode. • AES-CBC-256-256-bit AES algorithm in CBC mode. • DES-CBC-56-bit DES algorithm in CBC mode. DH group used in IKE negotiation phase 1. IKE SA lifetime (in seconds) of the IKE proposal Related commands ike proposal display ike sa Use display ike sa to display information about the current IKE SAs. Syntax display ike sa [ verbose [ connection-id connection-id | remote-address [ ipv6 ] remote-address [ vpn-instance vpn-name ] ] ] Views Any view Predefined user roles network-admin 280

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321

280
Usage guidelines
This command displays the configuration information about all IKE proposals in the descending order of
proposal priorities. If no IKE proposal is configured, the command displays the default IKE proposal.
Examples
# Display the configuration information about all IKE proposals.
<Sysname> display ike proposal
Priority Authentication Authentication Encryption
Diffie-Hellman Duration
method
algorithm
algorithm
group
(seconds)
----------------------------------------------------------------------------
1
RSA-SIG
SHA1
AES-CBC-128
Group 14
5000
11
PRE-SHARED-KEY
SHA1
AES-CBC-128
Group 14
50000
default
PRE-SHARED-KEY
SHA1
AES-CBC-128
Group 14
86400
Table 40
Command output
Field
Description
Priority
Priority of the IKE proposal
Authentication method
Authentication method used by the IKE proposal.
Authentication algorithm
Authentication algorithm used in the IKE proposal:
MD5
—HMAC-MD5 algorithm.
SHA
—HMAC-SHA1 algorithm.
Encryption algorithm
Encryption algorithm used by the IKE proposal.
3DES-CBC
—168-bit 3DES algorithm in CBC mode.
AES-CBC-128
—28-bit AES algorithm in CBC mode.
AES-CBC-192
—192-bit AES algorithm in CBC mode.
AES-CBC-256
—256-bit AES algorithm in CBC mode.
DES-CBC
—56-bit DES algorithm in CBC mode.
Diffie-Hellman group
DH group used in IKE negotiation phase 1.
Duration (seconds)
IKE SA lifetime (in seconds) of the IKE proposal
Related commands
ike
proposal
display ike sa
Use
display ike sa
to display information about the current IKE SAs.
Syntax
display ike sa
[
verbose
[
connection-id
connection-id
|
remote-address
[
ipv6
]
remote-address
[
vpn-instance
vpn-name
] ] ]
Views
Any view
Predefined user roles
network-admin