R3303-HP HSR6800 Routers Security Command Reference

527
Last rekey seq num : 3
Multicast rekeys received: 1
Allowable rekey cipher : Any
Allowable rekey hash : Any
Allowable transform : Any
Rekeys Cumulative
Total received : 5
After latest registration: 3
Rekey received (hh:mm:ss): 00:02:11
ACL Downloaded From KS 90.1.1.1:
rule 0 deny udp source-port eq 848 destination-port eq 848
rule 1 deny ospf
rule 2 permit icmp
KEK Policy:
Rekey transport type : Multicast
Lifetime (sec) : 159
Encrypt algorithm : AES
Key size : 128
Sig hash algorithm : SHA1
Sig key length (bit) : 1024
TEK Policy:
Interface GigabitEthernet1/0/1:
IPsec SA:
SPI: 0x9AE5951E(2598737182)
Transform: ESP-ENCRYPT-AES-128 ESP-AUTH-SHA1
SA timing:
remaining key lifetime (sec): 190
Anti-replay detection: Disabled
IPsec SA:
SPI: 0x12C55CFF(314924287)
Transform: ESP-ENCRYPT-AES-128 ESP-AUTH-SHA1
SA timing:
remaining key lifetime (sec): 402
Anti-replay detection: Disabled
Table 89 Command output
Field Description
Group Name GDOI GM group name.
Group Identity GDOI GM group ID (a number or an IPv4 address).
Rekeys Received Number of rekey messages received.