287
# Clear all IPsec SAs of IPsec profile
policy1
.
<Sysname> reset ipsec sa policy policy1
Related commands
display
ipsec
sa
reset ipsec statistics
Use
reset ipsec statistics
to clear IPsec packet statistics.
Syntax
reset
ipsec
statistics
Views
User view
Default command level
1: Monitor level
Examples
# Clear IPsec packet statistics.
<Sysname> reset ipsec statistics
Related commands
display
ipsec
statistics
reverse-route
Use
reverse-route
to enable and configure the IPsec Reverse Route Inject (RRI) feature.
Use
undo
reverse-route
to disable IPsec RRI.
Syntax
reverse-route
[
remote-peer
ip-address
[
gateway
|
static
] |
static
]
undo reverse-route
Default
IPsec RRI is disabled.
Views
IPsec policy view, IPsec policy template view
Default command level
2: System level
Parameters
static
: Enables static IPsec Reverse Route Inject (RRI). Static IPsec RRI creates static routes based
on the ACL that the IPsec policy references. This keyword is available only in IPsec policy view. If this
keyword is not specified, you enable dynamic IPsec RRI, which creates static routes based on IPsec
SAs.
remote-peer
ip-address
: Specifies a next hop for the static routes. To use the static routes for route
backup and load balancing, specify this option.
gateway
: Creates two recursive routes: one to the remote tunnel endpoint and the other to the
protected remote private network. Use the
gateway
keyword in an IKE-enabled IPsec policy to
define an explicit default forwarding path for IPsec traffic.