
C613-50186-01 Rev B
Command Reference for AR2050V
2717
AlliedWare Plus™ Operating System - Version 5.4.7-1.x
IP
SEC
C
OMMANDS
SHOW
IPSEC
SA
show ipsec sa
Overview
Use this command to view the settings used by current security associations. SAs
specify the Security Parameter Index (SPI), protocols, algorithms and keys for
protecting a single flow of traffic between two IPSec peers. For more information
about SA, see the
Internet Protocol Security (IPSec) Feature Overview and
Configuration Guide
.
Syntax
show [crypto] ipsec sa
Mode
Privileged Exec
Examples
To view the settings used by current security associations, enter the command
below:
awplus#
show ipsec sa
Output
Figure 61-9:
Example output from the
show ipsec sa
command
Parameter
Description
crypto
Security specific command.
ipsec
Internet Protocol Security defines the protection of IP packets
using encryption and authentication.
sa
Security Association.
awplus#show ipsec sa
-----------------------------------------------------------------------------
Peer SPI (in:out) Mode Proto Expires
Encryption Integrity PFS
-----------------------------------------------------------------------------
10.0.0.20 c2d8c150:7b24d3f5 tunnel ESP 28786s
AES256 SHA256 -
10.0.0.22 c6c2ad0d:0d008e3d tunnel ESP 3582s
3DES SHA1 -
10.0.0.25 cb36f9dd:cd87a834 tunnel ESP 28778s
AES128 SHA1 2