255
Field Description
Mode
Negotiation mode of the IPsec policy:
•
manual
—Manual mode.
•
isakmp
—IKE negotiation mode.
•
template
—IPsec policy template mode.
•
gdoi
—GDOI mode.
ACL
ACL referenced by the IPsec policy.
Mapped Template
Referenced IPsec policy template.
Local Address
IP address of the local end.
Remote Address
IP address of the remote end.
# Display detailed information about all IPsec policies.
<Sysname> display ipsec policy
===========================================
IPsec Policy Group: "policy_isakmp"
Interface: GigabitEthernet3/0/1
===========================================
------------------------------------
IPsec policy name: "policy_isakmp"
sequence number: 10
acl version: ACL4
mode: isakmp
-------------------------------------
encapsulation mode: tunnel
security data flow : 3000
selector mode: standard
ike-peer name: per
PFS: N
transform-set name: prop1
synchronization inbound anti-replay-interval: 1000 packets
synchronization outbound anti-replay-interval: 10000 packets
IPsec sa local duration(time based): 3600 seconds
IPsec sa local duration(traffic based): 1843200 kilobytes
policy enable: True
tfc enable: False
===========================================
IPsec Policy Group: "policy_man"
Interface: GigabitEthernet3/0/2
===========================================
-----------------------------------------
IPsec policy name: "policy_man"
sequence number: 10
acl version: ACL4
mode: manual
-----------------------------------------