R3303-HP HSR6800 Routers Security Command Reference

273
Table 38 Command output
Field Descri
p
tion
encapsulation mode
IPsec packet encapsulation mode:
tunnel—Tunnel mode.
transport—Transport mode.
security data flow ACL referenced by the IPsec policy template.
ACL's Version
ACL version:
acl4—IPv4 ACL.
acl6—IPv6 ACL.
ike-peer name IKE peer referenced by the IPsec policy template.
PFS Whether perfect forward secrecy is enabled.
DH group Used DH group. Its value can be 1, 2, 5, or 14.
transport-set name IPsec transform set referenced by the IPsec policy template.
IPsec sa local duration(time based) Time-based lifetime of the IPsec SAs at the local end.
IPsec sa local duration(traffic based)
Traffic-based lifetime of the IPsec SAs at the local end.
Related commands
ipsec policy-template
display ipsec profile
Use display ipsec profile to display the configuration information of IPsec profiles.
Syntax
display ipsec profile [ name profile-name ] [ | { begin | exclude | include } regular-expression ]
Views
Any view
Default command level
1: Monitor level
Parameters
name profile-name: Displays the configuration information of an IPsec profile. The profile-name
argument specifies the name of the IPsec profile and is a case-insensitive string of 1 to 15 characters.
|: Filters command output by specifying a regular expression. For more information about regular
expressions, see Fundamentals Configuration Guide.
begin: Displays the first line that matches the specified regular expression and all lines that follow.
exclude: Displays all lines that do not match the specified regular expression.
include: Displays all lines that match the specified regular expression.
regular-expression: Specifies a regular expression, a case-sensitive string of 1 to 256 characters.