Chapter 28 IPSec VPN
ZyWALL / USG (ZLD) CLI Reference Guide
193
28.2.6 SA Monitor Commands
This table lists the commands for the SA monitor.
28.2.7 IPv4 IKEv2 SA Commands
This table lists the commands for the IPv4 IKEv2 SA.
Table 106
sa Commands: SA Monitor
COMMAND
DESCRIPTION
show sa monitor [{begin
<1..1000>} | {end <1..1000>} |
{crypto-map
regexp
} | {policy
regexp
} |{rsort
sort_order
} |
{sort
sort_order
}]
Displays the current IPSec SAs and the status of each one. You can specify a range of
SA entries to display. You can also control the sort order of the display and search by
VPN connection or (local or remote) policy.
regexp
: A keyword or regular expression. Use up to 30 alphanumeric and _+-
.()!$*^:?|{}[]<>/ characters.
A question mark (?) lets a single character in the VPN connection or policy name
vary. For example, use “a?c” (without the quotation marks) to specify abc, acc and
so on.
Wildcards (*) let multiple VPN connection or policy names match the pattern. For
example, use “*abc” (without the quotation marks) to specify any VPN connection or
policy name that ends with “abc”. A VPN connection named “testabc” would match.
There could be any number (of any type) of characters in front of the “abc” at the
end and the VPN connection or policy name would still match. A VPN connection or
policy name named “testacc” for example would not match.
A * in the middle of a VPN connection or policy name has the ZyWALL / USG check
the beginning and end and ignore the middle. For example, with “abc*123”, any VPN
connection or policy name starting with “abc” and ending in “123” matches, no
matter how many characters are in between.
The whole VPN connection or policy name has to match if you do not use a question
mark or asterisk.
See
for other parameter description.
show isakmp sa
Displays current IKE SA and the status of each one.
no sa spi
spi
Deletes the SA specified by the SPI.
spi
: 2-8 hexadecimal (0-9, A-F) characters
no sa tunnel-name
map_name
Deletes the specified IPSec SA.
show vpn-counters
Displays VPN traffic statistics.
Table 107
sa Commands: IPv4 IKEv2
COMMAND
DESCRIPTION
show ikev2 policy [
policy_name
]
Shows the specified IKEv2 SA or all IKEv2 SAs.
[no] ikev2 policy
policy_name
Creates the specified IKEv2 SA if necessary and enters sub-command mode. The no
command deletes the specified IKEv2 SA.
activate
deactivate
Activates or deactivates the specified IKEv2 SA.
authentication {pre-share
| rsa-sig}
Specifies whether to use a pre-shared key or a certificate for authentication
certificate certificate-
name
Sets the certificate that can be used for authentication.
Содержание ZyWALL USG Series
Страница 19: ...19 PART I Introduction ...
Страница 20: ...20 ...
Страница 38: ...Chapter 2 User and Privilege Modes ZyWALL USG ZLD CLI Reference Guide 38 ...
Страница 39: ...39 PART II Reference ...
Страница 40: ...40 ...
Страница 48: ...Chapter 4 Status ZyWALL USG ZLD CLI Reference Guide 48 ...
Страница 52: ...Chapter 5 Registration ZyWALL USG ZLD CLI Reference Guide 52 ...
Страница 128: ...Chapter 15 Route ZyWALL USG ZLD CLI Reference Guide 128 ...
Страница 136: ...Chapter 17 Zones ZyWALL USG ZLD CLI Reference Guide 136 ...
Страница 140: ...Chapter 18 DDNS ZyWALL USG ZLD CLI Reference Guide 140 ...
Страница 148: ...Chapter 20 HTTP Redirect ZyWALL USG ZLD CLI Reference Guide 148 ...
Страница 152: ...Chapter 21 ALG ZyWALL USG ZLD CLI Reference Guide 152 ...
Страница 156: ...Chapter 22 UPnP ZyWALL USG ZLD CLI Reference Guide 156 ...
Страница 159: ...Chapter 23 IP MAC Binding ZyWALL USG ZLD CLI Reference Guide 159 ...
Страница 178: ...Chapter 25 Secure Policy ZyWALL USG ZLD CLI Reference Guide 178 ...
Страница 218: ...Chapter 32 Application Patrol ZyWALL USG ZLD CLI Reference Guide 218 ...
Страница 236: ...Chapter 34 IDP Commands ZyWALL USG ZLD CLI Reference Guide 236 ...
Страница 246: ...Chapter 35 Content Filtering ZyWALL USG ZLD CLI Reference Guide 246 ...
Страница 256: ...Chapter 36 Anti Spam ZyWALL USG ZLD CLI Reference Guide 256 ...
Страница 262: ...Chapter 37 SSL Inspection ZyWALL USG ZLD CLI Reference Guide 262 ...
Страница 268: ...Chapter 38 Device HA ZyWALL USG ZLD CLI Reference Guide 268 ...
Страница 284: ...Chapter 41 Addresses ZyWALL USG ZLD CLI Reference Guide 284 ...
Страница 288: ...Chapter 42 Services ZyWALL USG ZLD CLI Reference Guide 288 ...
Страница 302: ...Chapter 46 Authentication Server ZyWALL USG ZLD CLI Reference Guide 302 ...
Страница 338: ...Chapter 52 System Remote Management ZyWALL USG ZLD CLI Reference Guide 338 ...
Страница 358: ...Chapter 53 File Manager ZyWALL USG ZLD CLI Reference Guide 358 ...
Страница 372: ...Chapter 56 Session Timeout ZyWALL USG ZLD CLI Reference Guide 372 ...
Страница 374: ...Chapter 57 Diagnostics ZyWALL USG ZLD CLI Reference Guide 374 ...
Страница 384: ...Chapter 59 Maintenance Tools ZyWALL USG ZLD CLI Reference Guide 384 ...
Страница 426: ...List of Commands Alphabetical ZyWALL USG ZLD CLI Reference Guide 426 ...