CLI Reference Guide

show crypto-local isakmp
show crypto isakmp {ca-certificates}|{dpd}|{key}|{server-certificate}|{xauth}
Descriptions
This command displays Internet Key Exchange (IKE) parameters for the Internet Security Association and Key
Management Protocol (ISAKMP).
Syntax
Parameter Description
ca-certificate
Shows all the Certificate Authority (CA) certificate associated with VPN clients.
certificate-group
Shows the existing certificate groups by server certificate name and CA certificate.
dpd
Shows the IKE Dead Peer Detection (DPD) configuration on the local controller.
key
Shows the IKE preshared key on the local controller for site-to-site VPN. This is
includes keys configured by Fully Qualified Domain Name (FQDN) and local and global
keys configured by address.
server-certificate
Shows all the IKE server certificates used to authenticate the controller for VPN clients.
xauth
Shows the IKE XAuth configuration for VPN clients.
Usage Guidelines
Use the show crypto-local isakmp command to view IKE parameters.
Examples
This example shows sample output for the show crypto-local ca-certificate, show crypto-local dpd, show crypto-
local key, show crypto-local server-certificate and show crypto-local xauth commands:
(host) #show crypto-local isakmp ca-certificate
ISAKMP CA Certificates
-----------------------
CA certificate name Client-VPN # of Site-Site-Maps
------------------- ---------- -------------------
Dell-Factory-CA Y 0
(host) #show crypto-local isakmp certificate-group
ISAKMP Certificate Groups
--------------------------
Server certificate name CA certificate name
----------------------- -------------------
(host) #show crypto-local isakmp dpd
DPD is Enabled: Idle-timeout = 22 seconds, Retry-timeout = 2 seconds, Retry-attempts = 3
Dell PowerConnect W-Series ArubaOS 6.2 | Reference Guide show crypto-local isakmp | 939